On Sunday 11 April 2004 23:51, Diego Iastrubni wrote: > On Sunday 11 April 2004 22:48, Oded Arbel wrote: > > Hi List. > > > > - upgradable. something with a history of frequent updates - emphasis on > > "history" and "frequent". > > can you spell "debain"? i'm with Diego over here. Recently i installed a firewall machine with debian as well (after years of having slackware do the job). > > look for "elcuco" under googlde and you will find my box. The specs are > P133 + 32MB ram, 6GB disk. Running apache, proftpd, ssh, samba. > > It's not next, next, next, but after you set it up, you really don't think > about that box. It seems stable, and since it's debian, you will always > have updates.
I've chosen debian mainly because i have some experience with it and i know it's very flexible when it comes to auditing things inside the distro. My new box does only routing and firewalling, and for security reasons it shall stay that way. One of the advantages of debian over other distro's is it supports updates like Diego mentioned, and it is very important since your firewall box should be uber-secure and patched daily if needed, at least that is how i see it. For the record, my box runs l2tp, over cables, not ADSL nor pptp, but it's not the point. About admining the box - i dont believe in webmin and other GUI based tools. I believe the box should be configured manually using the command line (but that's me). Fruther more, debian makes it easy to install snort, tripwire and other IDS's that i think are very important on a machine with a role of a firewall. So in my opinion - debian all the way - dont be lazy, Oded. -- Dan Fruehauf. ================================================================= To unsubscribe, send mail to [EMAIL PROTECTED] with the word "unsubscribe" in the message body, e.g., run the command echo unsubscribe | mail [EMAIL PROTECTED]