Bekijk de volledige versie : Endian firewall on wl500g ?
Is there a way to install Endian Firewall http://www.endian.it/en/community/ on wl500g ?
Or is there a feature on some of custom firmwares that alows making of red, green and blue zone like in endian firewall ?
And one more question - Are all Lan ports on wl500g bridger together ?
Quote: "Endian Firewall Community is a "turn-key" linux security distribution that turns every system into a full featured security appliance."
Seems to me, that this is a complete linux distribution, not just a package to install. Did you find a list of supported HW platforms?
And what's a red, green and blue zone? If you ask questions, you should explain what you want.
First read what iptables can do for you, it's probably the base of what endian is using. Maybe it's a little bit harder to write iptables scripts yourself, but then you can do everything YOU want.
http://www.netfilter.org/projects/iptables/index.html
With custom scripts you can configure your own vlan on every single port of the WL-500g.
see an explanation from OpenWrt.org for a WL-500gp: http://wiki.openwrt.org/OpenWrtDocs/NetworkInterfaces
And what's a red, green and blue zone? If you ask questions, you should explain what you want.
I already have a working Endian firewall station, actually a vmware installation on one of my comps. It has 3 nics and each one is bridged to one of vmware virtual nics.
About zones - one nic represents one zone. Red one is for wan, green is for trusted lan, and blue is for untrusted lan (where I have an wl500g AP connected). In endian I can easily set that blue zone doesn't have access to green zone.
What I want to do is to remove the vmware pc simply because i know that my wl500g can do the same thing (only thing I need) and because vmware seams to slow my network.
How to set these zones on my WL500g so every lan port on it represents an individual zone.
And can I add ClamAV to my router ?
Or any real-time traffic scanning solution ?
Should I do this or install clean Endian (no vmware) on my PC ?
ClamAV (with samba real time scanning) is slow even on a P4 2GHz, so forget it on such a simple device...
I'm sure you could setup different vlans on Olegs Firmware, but I never tried that.
Currently I'm experimenting with OpenWrt Kamikaze (2.6 Kernel) on my WL-500gx, Olegs FW had to retire a few days ago...
My other Netgear WGT634U is running OpenWrt Kamikaze (2.6 Kernel) with WAN, LAN+WLAN & DMZ vlans, with restricted routing between vlans. No big thing to do. Iptables knowledge required.
OpenWrt White Russian (2.4 Kernel) should work on a WL-500g with wireless support, and vlans are quite easy to configure. But you should be able to configure linux from console only!
If you can live without real-time traffic scanning on the router, I'd go for the router only solution, as it's much quieter and requires a lot less electricity...