Hardware firewall?

Soldato
Joined
16 Jun 2013
Posts
5,375
Does anyone use a hardware firewall? I'm seriously considering adding one to my home network.

Is software a good enough solution or would a combination be better?

I know nothing is infallible but I need to up the ante in regards to security.
 
Forget about this software/hardware distinction, it's not that simple.

If you don't want to spend thousands on a specialised box and you just need a basic 'proper' firewall then spin up a demo of the Sophos UTM package (used to be called Astaro) in a virtual machine and send some traffic into it.

You need to have a pretty good reason why NAT isn't protecting you well enough though - do you need to do real time virus scanning or is there a requirement to block outbound connections?
 
Indeed the router does have a firewall but I wasn't sure that it was the same thing.

I wasn't thinking it would be thousands for home office job :( pretty much throws the option out the window already.

I need to connect to the office and my partners network via VPN as well as making sure the back ups I create are sufficiently shielded from the outside net(at the moment my home is serving as offsite backup). Its personal data as well as business data.

Unless my current solution of downloading straight to bluray(via windows vpn) then pulling the disk is sufficient.

Maybe I'm thinking overkill :confused:
 
I'd hazard a guess if you have to ask on this forum about this that the firewall built into 99% of consumer grade routers will do you just fine.

They achieve somewhat different things(Router based firewalls, software firewalls) but in all honesty as mentioned above NAT(TL:DR - external computers can't directly initiate a connection with local computers) will be more than enough security unless you have a specific need for another firewall.

EDIT: Just saw your new post, if you're connected to a VPN all the traffic will be encrypted regardless so you wouldn't need another firewall unless you want to specifically block your VPN connection, which would just be stupid :D
 
Last edited:
As long as your VPN isn't one of the insecure PPTP variants and the port forwarding is correctly set then you're fine.
 
Arrgh right I think I'm being stupid then :D lol.

Thank you all! Maybe my paranoia is overpowering my ability to think (well what ability I had anyway :D).

Edit: no I'm using l2TP which as I understand it is more secure but slower than pptp (very limited understanding as I'm sure you've already guessed).
 
Last edited:
Back
Top Bottom