Im new to astaro, and at present im evaluating it with a view to replacing my existing 'bsd' and fwtk solution. I think it's a great firewall, as I can recall not liking ipchains and ditching it for ipfilters. Anyhow, I have a couple of questions.
1. Is it wise ( I feel lots of people are going to flame me on this...) to make a firewall do lots of other things other than packet filtering/application filter/nat box, like adding in squid and qmail (oh how much it rocks!!!
I agree with the socks gateway (useful for ssh i know, and one of the reasons Im looking at deploying astaro) [:)]
In effect we have a rather elegant, free version of essentially what firewall1 and gauntlet does.. [:S]
(more seasoned firewall gurus comment please)
2. Is there anyone out there that has done a ipfilters to astaro migration who's got a three legged firewall (3 nics, inter/ext/dmz) and managed to replicate the redirect 'rdr' and 'bimap' which I assume is refered to as DNAT and MASQ?
Im not putting ASL down, but just a little curious as to the stance at which ASL is at.
Thanks muchly.
[;)]
Dan