Network Security: Three Open-Source Options
Evolutionary IT's Joseph Guarino explains how to achieve network security the open way (Third in a series on open-source security solutions)
Fri, June 18, 2010
CSO — Free and open-source software (FOSS) is everywhere. Its offerings span far and wide in the technology industry. The networking space is an excellent example of FOSS, with feature-packed firewalls, routers, VPNs and even UTMs, for nearly every need. In this article I will introduce you to a few of the commercially-supported open-source network security options currently available in the marketplace today. With open-source networking you can enjoy the benefits of lower costs, greater security, flexibility, extensibility and full enterprise support. Here are three examples.
Slideshow: 7 Open Source Innovations on the Cutting Edge
Slideshow: Open-Source Hardware Gadgets
EndianEndian is a feature-rich, unified threat management (UTM) system that offers a stateful firewall, VPN (IPSec/OpenSSL), gateway anti-malware, anti-spam, QOS/Bandwidth Management, IPS and proxy functionality. It is available as a software solution to build on your own hardware or a variety of optimized appliances that scale to meet your network security needs. Like all other competitive offerings in this space, the community edition offers core functionality with the commercial version offering even more features; plus commercial support.
The Endian web-based administrative interface is slick and easy to use. Its dashboard feature offers a real time comprehensive view of your Endian system and the network it is protecting. Endian also offers a centralized management feature, "Endian Network," a centralized web-based management/monitoring solution for multiple Endian products. The Endian Hotspot add-on module supports the creation of a secure wireless hotspot by allowing for captive portal, secure wireless via SSL VPN, a dedicated ticketing system, and RADIUS. Endian offers a great balance between a rich feature set and functionality.
Also see "5 Open-source Desktop Security Applications
UntangleUntangle is a feature packed UTM network security solution with a comprehensive set of security features: firewall, VPN (OpenVPN/SLL), routing, QOS, anti-malware defense, anti-phishing, anti-spam services, intrusion prevention, and Web content filtering. Its simple web GUI uses the metaphor of a rack allowing for quick and easy management of all aspects of the system. Enhanced reporting with interactive drilldown allows you to get a bird's eye view of what's going on in your network as well as export data to PDF/HTML.
General management features like automatic software updates for its core and associated signatures are welcome additions to any network/security administrator. The product comes in an open source edition (with all the features above). There are several commercial bundled versions that cater to SMB and educational environments. Commercial add-ons such as Commtouch, for enhanced spam blocking, an enhanced policy manager, commercial Web filtering solution from eSoft, WAN load balancing and failover, an active directory connector, and Kaspersky anti-virus vastly expand the offering.


