gmbaxter Posted June 25, 2015 Posted June 25, 2015 Hello all, Currently using a Fortinet 100D (Inherited setup) for firewall and filtering, but increasingly finding that the units (2 in HA) are not up to the job. I've been asked to look at open source web filtering, which I'm guessing isn't going to be ideal. Does anyone have any experience of using open source products for this? For an idea of scale, we're circa 5000 users/2000 devices on a 200Mb active, 200Mb backup internet connection. Primary link is shortly upgrading to 1Gbps. Thanks.
plexer Posted June 25, 2015 Posted June 25, 2015 Seriously? opensource is great and a lot of the web filtering solutions on the market do contain opensource software however there is also a lot of work that goes in to them to make them relatively easy to use, manage and configure, with that number of users and especially if you need HA type deployment you should be looking at any of the big players in the web filtering market. Websense, Clearswift, Sophos, Smoothwall would be my recommendations. Ben
Oaktech Posted June 25, 2015 Posted June 25, 2015 Do you need it to be edge protection/firewall as well? If you do I seriously suggest you add Palo Alto to your list to check out too. They are way more proactive than most in the market.
White_Fi Posted June 25, 2015 Posted June 25, 2015 Hi gmbaxter, iBoss is focused around scale-ability and the standard appliance that we supply for secondaries is good for up to 10,000 users. Further more, being a gigabit capable layer2 network bridge it doesn’t have the bottleneck issues of proxy based devices, so you will only need the one SWG box. Let us know if you’d like us to setup a web or onsite demo for you.
gmbaxter Posted June 25, 2015 Author Posted June 25, 2015 Thanks for the replies. I really need to look at opensource first to rule it out... I know its the opposite of ideal!
gmbaxter Posted June 25, 2015 Author Posted June 25, 2015 Forgot to add, no firewall function required - just filtering.
jmcdermott Posted June 26, 2015 Posted June 26, 2015 pfsense + squid3 (with ssl bump) + squidguard (possibly dansguardian not sure if it can run alongside squidguard.) I have been playing not managed a final setup yet but have had some success.
RobertoSpindola Posted July 2, 2015 Posted July 2, 2015 In the British school of Rio de Janeiro , we using fortigate it´s working very well a very long time. But real problem with fortigate ??
SchoolsBroadband Posted July 3, 2015 Posted July 3, 2015 We're a big Lightspeed fan but also a fan of Fortigate and have hundreds deployed. What problem are you having with the Fortigate? Maybe we can give you some free advice on how to improve it? Fortigates are brilliant firewalls.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now