M0n0wall software firewall tutorial

Source: Internet
Author: User
Tags dns forwarder

Introduction to m0n0wall:

I introduced [Introduction to Linux-based software firewalls] A few days ago, among which m0n0wall is an outstanding one.

M0n0wall is a complete and embedded firewall software package. It can be installed in Embedded PCs and provides all the important features (including ease of use) of commercial firewalls ), the price is only a fraction of that of commercial firewalls (free software ). M0n0wall is based on bare-bones version of FreeBSD, including a web server, PHP and other tool software.

Components of m0n0wall:

  • FreeBSD components (kernel, user programs)
  • Ipfilter
  • PHP (CGI Version)
  • Thttpd
  • MPD
  • Isc dhcp server
  • Ez-ipupdate (for dyndns updates)
  • Dnsmasq (for the caching DNS forwarder)
  • Raccoon (for IPSec IKE)

M0n0wall hardware specification requirements:

M0n0wall only supports X86 architecture. The supported devices include standard PC devices and various embedded devices. The objective is to embed a PC based on x86. M0n0wall has very low hardware requirements, including 486 chips, 32 MB memory (usually 64 MB), 8 MB hard disks (can be a usable hard disk), and NICs (two disks, if you support DMZ, you can use three data blocks.

CPU: Generally, CPU is the bottleneck of the system. Poor NICs consume more CPU than good NICs, so one of the main factors for CPU selection is the quality of the NICS used. If you use a good network card, such as an intel network card, the line speed is usually measured. The pentinum CPU can reach 30-40 Mbps, And the Pentium III can reach 100 Mbps. To achieve a speed of 1000 MB, a 2.8 + GHz Pentium 4 is required.

Memory: stores the memory required by the m0n0wall image. In any case, the memory cannot exceed 64 MB. More memory can be installed at will, but even if all functions are enabled and the load is heavy, it will not exhaust 64 MB.

Storage: m0n0wall can work well on hard disks and CF cards (at least 8 Mb ). During boot, m0n0wall is loaded into RAM and runs in Ram. Therefore, the speed and type of storage media are not factors affecting performance. A slow storage medium, such as a CF card, takes a little longer time to start than the hard disk. Selecting a storage medium only affects the start time. We recommend that you use the CF card for maximum reliability because it is less faulty than the hard disk.

NIC: m0n0wall supports most Ethernet cards. However, we recommend that you use an Intel Nic for better performance. M0n0wall also supports unlimited network interfaces, which can be used for wireless users. However, currently, few unlimited network interfaces are supported.

Features of m0n0wall

M0n0wall provides user-friendly Configuration Management Based on the Web interface (PHP). Any computer in the same network segment in the LAN can use the default IP address of m0n0wall to log on to the web interface and manage the system. M0n0wall also provides VPN functions, including address ing, Nat port ing, custom routing rule configuration, and 8.11b wireless network support, it is particularly worth noting that m0n0wall also adds traffic control functions not included in most hardware routers.

Next, let's take a closer look at the features of the m0n0wall software firewall.

Http://m0n0.ch/wall/downloads.php m0n0wall download

The installation of m0n0wall is not described. It is very simple. After installation, You need to specify the network card and Management IP address of the Intranet and Internet. Next, you can log on to the Internet through the IE browser for Management. The default user name is admin and the default password is mono.

M0n0wall:

  • [M0n0wall software firewall 9: Other Functions]
  • [M0n0wall software firewall 8: establishing IPSec VPN with Juniper SSG-5]
  • [M0n0wall software firewall 7: Configure IPSec VPN for two m0n0walls (to be switched)]
  • [M0n0wall software firewall 6: Network Services]
  • [M0n0wall software firewall 5: Traffic Shaping and alias]
  • [M0n0wall software firewall 4: Firewall Rules and address ing]
  • [M0n0wall software firewall 3: interface settings]
  • [M0n0wall software firewall 2: System Management]

 

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.