Jump to content

Recommended Posts

Posted

Hi all,

 

Hope you are well.

 

Its half-term so I am setting up a firewall for home. I have tried Untangle and Sophos XG. I liked Untangle but dont want to pay for the main parts, I couldnt get on with Sophos XG at home, even though I use the UTM at work.

 

So I have decided to setup PFSense as I am familiar with that and like that I can setup what I need. I am going to set it up with PFBlockerNG and maybe OpenDNS. Ideally i would like to set it up so my kids get separate filtering to my wife and me. So i was thinking of setting up a separate VLAN and SSID for the kids devices on the PFSense box.

 

I have found a couple of guides for this, but did anyone have any recommendations.

 

Cheers

Posted

Hi,

 

I am planning on doing a similar setup. Any recommendations would be great. Also recommend any additional plugins / services to improve security ?

 

Would you recommended pfsense in a small primary school ? What are your thoughts ?

 

Thanks

Posted (edited)

The following videos might be useful too? They cover setting up multiple networks and blocking websites.

 

 

 

Thomas Lawrence also has one on setting up Suricata...

 

Edited by Arthur
Posted

I'm using PFSense at home on a qotom mini PC I got from China. 4 Intel gigabit ports and an I3.

Combined with a HP 1810-24 (Picked up for ~£15 on ebay) and a UniFi AC-Pro I have my entire house wired up.

 

You can setup VLAN's on the PfSense box so you may be able to plug your WAP directly into the pfsense and forego the switch ?

 

My internal LAN is running PfBlocker and port forwards all external DNS requests to itself. So it is stripping out ad's on all my devices which is super nice. When I get to work I forgot how much of a pain it is to use on some of the apps I have due to all the ad's !

I have another VLAN for the guest network which is on a seperate VLAN and SSID which can't talk to anything else. All traffic from this network is pushed through a VPN

Then a third VLAN for IoT that has extermely restrictive firewall rules

Posted
Thanks for the posts. Unfortunately due to its location I do need to use the switch, which also has a Amazon Fire box, HTPC plugged into it. As I can't plug directly into the PFSense box will I need a VLAN capable switch?
Posted

I have my firewall on a virtual machine - a Smoothwall running Virtualbox. 2 interfaces bridged to physicals on my file server. The 2nd physical interface is not active on the file server so that's used by the firewall for my internet connection. I have an AP as well for Wireless. All on one subnet - too many home devices rely on broadcasts to communicate so decided I wouldn't bother with segregating networks.

Works great - file server serves as host for 2 other VMs. One Zentyal Linux distro (SMB) for AD functionality and a test VM for my chosen Linux distro at the time. Windows, laptops, chromebooks, tablets, devices and phones all connect to same subnet.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...