On Sunday 11 April 2004 23:51, Diego Iastrubni wrote:
> On Sunday 11 April 2004 22:48, Oded Arbel wrote:
> > Hi List.
> >
> > - upgradable. something with a history of frequent updates - emphasis on
> > "history" and "frequent".
>
> can you  spell "debain"?
i'm with Diego over here.
Recently i installed a firewall machine with debian as well (after years of 
having slackware do the job).
>
> look for "elcuco" under googlde and you will find my box. The specs are
> P133 + 32MB ram, 6GB disk. Running apache, proftpd, ssh, samba.
>
> It's not next, next, next, but after you set it up, you really don't think
> about that box. It seems stable, and since it's debian, you will always
> have updates.

I've chosen debian mainly because i have some experience with it and i know 
it's very flexible when it comes to auditing things inside the distro.
My new box does only routing and firewalling, and for security reasons it 
shall stay that way.
One of the advantages of debian over other distro's is it supports updates 
like Diego mentioned, and it is very important since your firewall box should 
be uber-secure and patched daily if needed, at least that is how i see it.

For the record, my box runs l2tp, over cables, not ADSL nor pptp, but it's not 
the point.

About admining the box - i dont believe in webmin and other GUI based tools.
I believe the box should be configured manually using the command line (but 
that's me).
Fruther more, debian makes it easy to install snort, tripwire and other IDS's 
that i think are very important on a machine with a role of a firewall.
So in my opinion - debian all the way - dont be lazy, Oded.

-- 
Dan Fruehauf.


=================================================================
To unsubscribe, send mail to [EMAIL PROTECTED] with
the word "unsubscribe" in the message body, e.g., run the command
echo unsubscribe | mail [EMAIL PROTECTED]

Reply via email to