[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Linux firewall vs Windows and Hardware based firewalls



On Fri, 2003-08-01 at 02:21, Tom Allison wrote:
> Ron Johnson wrote:
> > On Thu, 2003-07-31 at 08:30, Rex Chan wrote:
> > 
> >>On Thu, Jul 31, 2003 at 08:50:21PM +0800, Robert Storey wrote:
> > 
> > [snip]
> > 
> >>The advantage of hardware firewall - most likely speed - 
> >>specialised hardware to deal with packet processing and the like.
> > 
> > 
> > So if a P2-233 w/ 32MB RAM doesn't handle it, try something faster.
> > 
> > If a GHz CPU w/ 256B RAM (dirt cheap!!) can't handle a T3 (45Mbps,
> > 5.6MBps), something is wrong.
> > 
> 
> Many of the firewall appliances are considerably slower processors.
> iptable routing doesn't take a lot of RAM or CPU cycles.
> 
> What requires more RAM/CPU is going to be DNS caching, DHCP, Squid, VPN -- 
> All of these can be done with Linux and firewall distributions (ie: 
> smoothwall, ipcop)

Wouldn't the DNS, DHCP, DHCP and Squid be on another box anyway?

-- 
+-----------------------------------------------------------------+
| Ron Johnson, Jr.        Home: ron.l.johnson@cox.net             |
| Jefferson, LA  USA                                              |
|                                                                 |
| "I'm not a vegetarian because I love animals, I'm a vegetarian  |
|  because I hate vegetables!"                                    |
|    unknown                                                      |
+-----------------------------------------------------------------+




Reply to: