Distribución de Firewall (Final)

Definicion: Un firewall para un usuario, es un dispositivo que me permite proteger una red interna.

Que Quiero Conseguir

  • Quiero un Firewall facil de instalar y manejar
  • En GNU/Linux
  • LIBRE 
  • Administarcion Remota HTTPS
  • Instalable
  • la mayor cantidad de servicios: VPNs,Filtro de contenido, etc

NOTA

Estos SON mis requerimientos, no implica que las distribuciones que descarto son malas o que no son útiles.
Simplemente NO son lo que YO quiero según mi deseos.

Candidatos

Despues de  buscar en Distrowatch por Firewall tenemos


1. Astaro Security Gateway
Astaro offers an integrated software solution that provides superior performance in an all-in-one firewall. Its hardened operating system, stateful packet inspection, content filtering (virus & surf protection), application  roxies and IPsec based VPN provides a powerful solution to today's security issues. It is designed to maximize your  etworks security without compromising its performance enabling telecommuters, branch offices, customers and  uppliers to safely share critical business information. Our proprietary user interface, WebAdmin allows ease of use and manageability of all open source firewall components, as well as the Up2Date service via the Internet. It is easy to  nstall with all components on one CD achieving simple implementation and integration to existing network nvironments.

2. CensorNet
CensorNet is an Internet Management Appliance designed to control and monitor individuals accessing Internet resources on a local area network. This dedicated server inspects all inbound and outbound data and decides, based on configurable rules, whether the individual or workstation concerned has the correct access profile to allow the request to be completed.

3. ClarkConnect
With a lot of help from Linux open-source software and a little help from ClarkConnect, you can transform standard PC hardware into a dedicated broadband gateway and easy-to-use server. The software is a great solution for small businesses, home offices, and networked homes! Starting with Red Hat as a base, we have removed unnecessary software, secured it, added useful Internet gateway software, and made it easier to install.

4. Coyote Linux
Coyote Linux Personal Firewall is a personal firewall distribution of Linux designed for the purpose of protecting a personal or educational network. In addition to being designed to have very low hardware requirements, Coyote Linux is able to provide the performance and uptime that is expected from any Linux based system. This firewall product is licensed for personal and educational use and is available free of charge.

5. Devil-Linux
Devil-Linux is a CD-based Linux distribution for firewalls and routers. The goal of Devil-Linux is to have a small, customizable and secure (what is secure on the Internet?) Linux. The future of Devil-Linux will go far beyond an ordinary router, we will provide a lot of other services, but the distribution will still be easy and fast to maintain.

6. Endian Firewall
Endian Firewall is a Unified Threat Management (UTM) Appliance that protects networks and improves connectivity. Based on Red Hat Enterprise Linux, Endian Firewall is 100% open source and includes a wide variety of features, such as stateful inspection firewall, HTTP/FTP anti-virus, content filter, POP3/SMTP anti-virus, anti-phishing and anti-spam tools, true SSL/TLS VPN, IDS, and other features.

7. Euronode
Euronode is a set of Debian GNU/Linux-based distributions, which transform a simple computer into a high-performance server or router in a few minutes. Euronode scripts automate the process of installation and configuration: auto-detection of devices, partitioning, automatic installation, and auto-configuration of the system and services. The Euronode project provides three product branches: "Minimal Woody" (basic debootstrap); "Simple DSL/cable Firewall" (a simple and secure Internet connection sharing with auto-detection of ethernet and USB modems) and "Advanced DSL/cable Firewall" (Simple Firewall + anti-virus + anti-spam + home web hosting).

8. Gibraltar Firewall
Gibraltar is a Debian GNU/Linux-based firewall package which is bootable directly from CD-ROM, so hard disk installation is not necessary. The configuration data is optionally stored on hard disk, floppy disk or an USB storage device. Gibraltar was specifically developed for small-sized to medium-enterprises and fulfils all demands for an up-to-date firewall package. In times where the threats of viruses, worms, trojan horses or hackers are increasing rapidly, Gibraltar offers you an extensive protection of your internet connection. Gibraltar works with every sort of internet-connection. Whether there you are using a permanent cable, DSL or dial-up connection, Gibraltar takes care that your internet-connection is safe. Besides the commercial release of Gibraltar, there is as well a freely available release.

9. IPCop Firewall
IPCop Linux is a complete Linux Distribution whose sole purpose is to protect the networks it is installed on. After seeing the direction certain Linux Distributions were heading in, a group of dissatisfied users/developers decided that there was little reason for the idea of a GPL Linux Firewall Distribution of such potential to be, simply, extinguished. By implementing existing technology, outstanding new technology and secure programming practices IPCop is the Linux Distribution for those wanting to keep their computers/networks safe. The IPCop Linux Team is dedicated to doing the very best job possible to keep your systems safe, as you can see on our site. "The Bad Packets Stop Here!"

10. Linux LiveCD Router
Linux LiveCD Router is a Linux distribution designed to share a broadband connection over WiFi. It can be used with DSL, cable modem, T1, ISDN, and dial-up connections. It can also be used it as a firewall, or as an access point for most WiFi cards. Linux LiveCD Router does not require any installation, but requires a dedicated computer to boot and run the CD.

11. m0n0wall
m0n0wall is a project aimed at creating a complete, embedded firewall software package that, when used together with an embedded PC, provides all the important features of commercial firewall boxes (including ease of use) at a fraction of the price (free software). m0n0wall is based on a bare-bones version of FreeBSD, along with a web server (thttpd), PHP and a few other utilities. The entire system configuration is stored in one single XML text file to keep things transparent. m0n0wall is probably the first UNIX system that has its boot-time configuration done with PHP, rather than the usual shell scripts, and that has the entire system configuration stored in XML format.

12. O-Net
O-Net is an Italian commercial Linux distribution created by HI-NET.

13. pfSense
pfSense is a m0n0wall-derived operating system. It uses Packet Filter, FreeBSD 6.x (or DragonFly BSD when ALTQ and CARP is finished), ALTQ for excellent packet queuing, and an integrated package management system for extending the environment with new features.

14. Phayoune Secure Linux
Phayoune Linux is a live distribution based on Linux From Scratch and optimised for USB storage devices. Besides standard desktop software, it also includes a variety of server applications, including a firewall, web server, mail server, database server, file server and application server.

15. redWall Firewall
redWall Firewall is a bootable CD-ROM firewall based on Gentoo Linux. Its goal is to provide a feature-rich firewall solution together with a web-based interface for all the generated log files. redWall Firewall comes with Snort, SnortSam, DansGuardian and support for fwbuilder, SpamAssassin, reporting, VPN and mail alerts. Configuration files are stored on a floppy disk or a USB pen drive.

16. Securepoint Firewall & VPN Server
Securepoint Security Solutions offers a full-featured suite of firewall tools designed for enterprisewide deployment. Not only can it protect an internal network from outside attacks, it also helps segregate parts of your internal network and define custom protection rules for each. Securepoint lets you create and manage VPN tunnels for remote users and define traffic filters, reports, and alerts for your entire network. Securepoint Freeware is a very secure and free firewall solution for protecting your internet gateway. Securepoint can as well be used with existing firewalls and to protect interconnected locations or divisions.

17. SmoothWall Express
SmoothWall is a family of Internet security products, designed to defend your users and your network from external attacks. SmoothWall Express is based on the Linux operating system. Linux is the ideal choice for security systems; it is well proven, secure, highly configurable and freely available as open source code. SmoothWall includes a hardened subset of the GNU/Linux operating system, so there is no separate OS to install. Designed for ease of use, SmoothWall is configured via a web-based GUI, and requires absolutely no knowledge of Linux to install or use.

18. Untangle Gateway
Untangle Gateway is a KNOPPIX-based network gateway with pluggable modules for network applications like spam blocking, web filtering, anti-virus, anti-spyware, intrusion prevention, VPN, SSL VPN, firewall, and more.

19. Vyatta
Vyatta software is a complete, ready-to-use, Debian-based distribution that is designed to transform standard x86 hardware into an enterprise-class router / firewall. Vyatta software includes support for commonly used network interfaces, and industry-standard routing protocols and management protocols. Unlike previous open-source routing projects, all these features are configurable via a single command-line interface (CLI) or web-based graphical user interface (GUI). Vyatta software is available as a free Community Edition as well as tiered Software Subscriptions that include maintenance, upgrades and support.

Evaluación

La tabla completa de evaluación esta aqui --> .

Los finalistas

Hay tres finalistas declarados  con propositos muy puntuales. Personalmente el ganador es IPCop por ser GPL aunque carece de ciertas caracteristicas, pero con addons se arregla. Los otros dos son Mixtos y la version libre es bastante pródiga en características.

 

 IPCOP
Ipcop

 

ENDIAN
SMOOTHWALL
Endian
 Smoothwall