SYS-CON MEDIA Authors: Elizabeth White, Yeshim Deniz, Roger Strukhoff, Jason Bloomberg, Pat Romanski

Blog Feed Post

Open Source Firewalls - Untangle and pfSense comparison

So this week I had the opportunity of setting up a little lab to test both of these firewalls. Before this week I had no idea these firewalls even existed, and the only open source routing/firewall software I even knew of at the time was Vyatta; which is really only for routing purposes.

Starting off, you really need to pay attention to the system requirements, especially Untangles. I attempted to install both of these using Ubuntu with VirtualBox and was in for a nasty surprise. Originally skimming the requirements brought me to this issue, to where I used an old Dell Dimension 3000 box to use this on. Which as you may know, is very obsolete and moth-eaten. Lets just say the 1 GB of RAM and 40 GB hard drive didn't satisfy my general virtual needs; especially Untangles thirst for resources. So I decided to use ESX 3.5 on a beastly server that happened to be laying around; now we're talking.

Simply put, Untangle loves memory. There is no way around it, this is a Debian based OS that comes with its own pretty GUI; so you can see what I'm saying. But thats not just it, the tools on this thing are immensely creative. They are so creative that you need 2 GB of memory to run them properly. And thats if you only have a small amount of users. They say with 1-50 users you will be fine with 1 GB of memory but I highly recommend using more than that, who would not want to use more than 1 GB of memory anyways? Also, you will be fine with a Pentium 4 or equivalent processor until you hit 50+ users. Once your in the realm of that many users, you will want to be going dual core with 2 GB+ of memory. That will last you until 150 users, and well, you see where I'm going with this. This thing will handle up to 5000 users on a quad core, which I think is staggering. But are all these resources worth it? Absolutely!

Out of the box this thing will come with spam, phishing, spyware, and virus blockers. Not to mention its own Protocol Control which personally, is my favorite. Because it gives you a whole list (4 pages worth) of protocols to choose from, and take action on each. It has its own IPS as well, which has a good chunk of viruses/malware to choose from for blocking, with signatures included. And all of these tools are very straight forward with a friendly GUI. Almost anyone that has a basic understanding of networking and web application will be able to work with this fairly easily. There are a lot of other detailed tools as well, but I decided to briefly go over the ones that I found important.

Now unlike Untangle, pfSense is a FreeBSD OS. This firewall is very lightweight and has a pretty powerful terminal. Instead of needing a ton of memory and CPU power, this little guy can run comfortably on 128 MB of memory, and 300 MHz of CPU power, which is mainly for residential purposes. Once you reach 20-50 Mb throughput, you'll want a 500 MHz system with about 512 MB of memory. Still thats pretty lightweight if you ask me. 100 Mb wire-speed? Eh, no problem, just push your CPU power to about 700 MHz to 1 GHz, this thing operates effortlessly.

Administering pfSense can only be done from the Webui, locally you have the terminal, which is very helpful in setting up the box. Once your in the Webui, theres a few wizards to help you to get started. You really need to dig in order to find some of the nifty tools, in the start it doesn't throw them all at your face for ease of use like Untangle does. The blocking is mostly done through a rule base inside the Webui, which I started to like a lot. But unlike Untangle, you need to start from scratch on all the blocking/passing, whereas Untangle gives you about 4 pages worth of different protocols and web categories to block/pass that have signatures already in place.

The available services for pfSense are also pretty nifty. You can set up your own PPPoE server, OpenNTPD server, and you can even enable RIP on your network, among others, and VPN setup seems fairly easy.

I personally think Untangle is the best to get started on for a beginner. The GUI is very helpful and directive on what you should do. I personally liked the web filter and how it gave description of everything you selected, that can be very helpful if you are unsure. PfSense requires you to build everything from scratch, its way more advanced versus Untangle; but this also gives you a lot more control. However, the performance of pfSense while being so lightweight is unbeatable. Especially if you aren't looking to spend a lot of money on hardware. All in all, it comes down to personal preference.

Read the original blog entry...

More Stories By Hurricane Labs

Christina O’Neill has been working in the information security field for 3 years. She is a board member for the Northern Ohio InfraGard Members Alliance and a committee member for the Information Security Summit, a conference held once a year for information security and physical security professionals.

Latest Stories
Atmosera delivers modern cloud services that maximize the advantages of cloud-based infrastructures. Offering private, hybrid, and public cloud solutions, Atmosera works closely with customers to engineer, deploy, and operate cloud architectures with advanced services that deliver strategic business outcomes. Atmosera's expertise simplifies the process of cloud transformation and our 20+ years of experience managing complex IT environments provides our customers with the confidence and trust tha...
With the introduction of IoT and Smart Living in every aspect of our lives, one question has become relevant: What are the security implications? To answer this, first we have to look and explore the security models of the technologies that IoT is founded upon. In his session at @ThingsExpo, Nevi Kaja, a Research Engineer at Ford Motor Company, discussed some of the security challenges of the IoT infrastructure and related how these aspects impact Smart Living. The material was delivered interac...
CloudEXPO has been the M&A capital for Cloud companies for more than a decade with memorable acquisition news stories which came out of CloudEXPO expo floor. DevOpsSUMMIT New York faculty member Greg Bledsoe shared his views on IBM's Red Hat acquisition live from NASDAQ floor. Acquisition news was announced during CloudEXPO New York which took place November 12-13, 2019 in New York City. Our Silicon Valley 2019 schedule will showcase 200 keynotes, sessions, general sessions, power panels, and...
Intel is an American multinational corporation and technology company headquartered in Santa Clara, California, in the Silicon Valley. It is the world's second largest and second highest valued semiconductor chip maker based on revenue after being overtaken by Samsung, and is the inventor of the x86 series of microprocessors, the processors found in most personal computers (PCs). Intel supplies processors for computer system manufacturers such as Apple, Lenovo, HP, and Dell. Intel also manufactu...
Darktrace is the world's leading AI company for cyber security. Created by mathematicians from the University of Cambridge, Darktrace's Enterprise Immune System is the first non-consumer application of machine learning to work at scale, across all network types, from physical, virtualized, and cloud, through to IoT and industrial control systems. Installed as a self-configuring cyber defense platform, Darktrace continuously learns what is ‘normal' for all devices and users, updating its understa...
As you know, enterprise IT conversation over the past year have often centered upon the open-source Kubernetes container orchestration system. In fact, Kubernetes has emerged as the key technology -- and even primary platform -- of cloud migrations for a wide variety of organizations. Kubernetes is critical to forward-looking enterprises that continue to push their IT infrastructures toward maximum functionality, scalability, and flexibility. As they do so, IT professionals are also embr...
The widespread success of cloud computing is driving the DevOps revolution in enterprise IT. Now as never before, development teams must communicate and collaborate in a dynamic, 24/7/365 environment. There is no time to wait for long development cycles that produce software that is obsolete at launch. DevOps may be disruptive, but it is essential. DevOpsSUMMIT at CloudEXPO expands the DevOps community, enable a wide sharing of knowledge, and educate delegates and technology providers alike.
Cloud-Native thinking and Serverless Computing are now the norm in financial services, manufacturing, telco, healthcare, transportation, energy, media, entertainment, retail and other consumer industries, as well as the public sector. The widespread success of cloud computing is driving the DevOps revolution in enterprise IT. Now as never before, development teams must communicate and collaborate in a dynamic, 24/7/365 environment. There is no time to wait for long development cycles that pro...
At CloudEXPO Silicon Valley, June 24-26, 2019, Digital Transformation (DX) is a major focus with expanded DevOpsSUMMIT and FinTechEXPO programs within the DXWorldEXPO agenda. Successful transformation requires a laser focus on being data-driven and on using all the tools available that enable transformation if they plan to survive over the long term. A total of 88% of Fortune 500 companies from a generation ago are now out of business. Only 12% still survive. Similar percentages are found throug...
OpsRamp is an enterprise IT operation platform provided by US-based OpsRamp, Inc. It provides SaaS services through support for increasingly complex cloud and hybrid computing environments from system operation to service management. The OpsRamp platform is a SaaS-based, multi-tenant solution that enables enterprise IT organizations and cloud service providers like JBS the flexibility and control they need to manage and monitor today's hybrid, multi-cloud infrastructure, applications, and wor...
Apptio fuels digital business transformation. Technology leaders use Apptio's machine learning to analyze and plan their technology spend so they can invest in products that increase the speed of business and deliver innovation. With Apptio, they translate raw costs, utilization, and billing data into business-centric views that help their organization optimize spending, plan strategically, and drive digital strategy that funds growth of the business. Technology leaders can gather instant recomm...
The Master of Science in Artificial Intelligence (MSAI) provides a comprehensive framework of theory and practice in the emerging field of AI. The program delivers the foundational knowledge needed to explore both key contextual areas and complex technical applications of AI systems. Curriculum incorporates elements of data science, robotics, and machine learning-enabling you to pursue a holistic and interdisciplinary course of study while preparing for a position in AI research, operations, ...
CloudEXPO has been the M&A capital for Cloud companies for more than a decade with memorable acquisition news stories which came out of CloudEXPO expo floor. DevOpsSUMMIT New York faculty member Greg Bledsoe shared his views on IBM's Red Hat acquisition live from NASDAQ floor. Acquisition news was announced during CloudEXPO New York which took place November 12-13, 2019 in New York City.
Industry after industry is under siege as companies embrace digital transformation (DX) to disrupt existing business models and disintermediate their competitor’s customer relationships. But what do we mean by “Digital Transformation”? The coupling of granular, real-time data (e.g., smartphones, connected devices, smart appliances, wearables, mobile commerce, video surveillance) with modern technologies (e.g., cloud native apps, big data architectures, hyper-converged technologies, artificial in...
Codete accelerates their clients growth through technological expertise and experience. Codite team works with organizations to meet the challenges that digitalization presents. Their clients include digital start-ups as well as established enterprises in the IT industry. To stay competitive in a highly innovative IT industry, strong R&D departments and bold spin-off initiatives is a must. Codete Data Science and Software Architects teams help corporate clients to stay up to date with the mod...