Tài liệu hạn chế xem trước, để xem đầy đủ mời bạn chọn Tải xuống
1
/ 252 trang
THÔNG TIN TÀI LIỆU
Thông tin cơ bản
Định dạng
Số trang
252
Dung lượng
10,61 MB
Nội dung
[...]... Monitoring traffic with pfTop Monitoring system activity 187 187 190 191 1 92 195 197 20 2 20 4 20 6 20 7 20 9 Introduction 21 1 Determining our deployment scenario 21 2 Determining our throughput requirements 21 4 Determining our interface requirements 21 7 Choosing a standard or embedded Image 21 9 Choosing a Form Factor 22 0 iii Preface pfSense is an open source distribution of FreeBSD-based firewall which provides... Restoring the configuration file Configuring automatic configuration file backup ii 125 126 131 134 138 141 145 154 154 156 158 159 161 164 165 168 170 1 72 174 176 179 Table of Contents Updating pfSense firmware 181 Appendix A: Monitoring and Logging 187 Appendix B: Determining our Hardware Requirements 21 1 Index 22 5 Introduction Customizing the Status Dashboard Monitoring current traffic Configuring... server Configuring dynamic DNS 23 24 26 28 31 32 35 38 Introduction 41 Creating an alias 41 Creating a NAT port forward rule 47 Creating a firewall rule 51 Creating a schedule 57 Remote desktop access, a complete example 61 Table of Contents Chapter 4: Virtual Private Networking 67 Chapter 5: Advanced Configuration 93 Introduction Creating an IPsec VPN tunnel Configuring the L2TP VPN service Configuring... should install pfSense on The minimum requirements for a pfSense installation are 500Mhz, 128 MB RAM, and 1GB hard disk space PfSense can also be installed as a virtual machine, and for convenience a VMWare image is available from the Downloads section of the pfSense website Who this book is for This book is intended for all levels of network administrators If you are an advanced user of pfSense, then... Requirements will show you how to choose the best pfSense configuration after you determine your firewall requirements You will even learn how and where to deploy pfSense to fit your environment's security needs What you need for this book A working installation of pfSense2. 0 is the only requirement for the recipes in this book Readers who are new to pfSense can follow the recipes in the appendices... default credentials are: Username: admin Password: pfsense How to do it 1 Browse to System | General Setup 2 Enter a Hostname This name will be used to access the machine by name instead of the IP address For example, we can browse to http:/ /pfsense instead of http://1 92. 168.1.1: 3 Enter your Domain: 6 Chapter 1 4 DNS Servers can be specified here By default, pfSense will act as the primary DNS server and... Chapter 2, Essential Services for more information 5 Check Allow DNS server list to be overridden by DHCP/PPP on WAN This ensures that any DNS requests that can't be resolved internally are passed on and resolved by the external DNS servers provided by your ISP 6 Enter a Time zone and leave the default NTP time server as 0 .pfsense. pool.ntp.org 7 I'd recommend the default Theme, pfSense2. 0's new pfsense_ ng... interface is new to pfSense2. 0 Prior versions required a minimum of two (WAN and LAN) interfaces How it works pfSense, like any other computer operating system, references each NIC by some unique value (fxp0, em0, em1, and so on) These unique identifiers are often associated with the driver being used and make it easier for us humans to use than the associated MAC address (00:80:0c: 12: 01: 52) Taking that... almost every pfSense deployment; whether that is a firewall, router, or even a wireless access point! Once pfSense is installed and configured according to the recipes in this chapter, you will have a fully-operation firewall plus router At its most basic level, a pfSense machine can be used to replace the common home router when more functionality is desired In more advanced configurations, pfSense can... the DNS Forwarder recipe in Chapter 2, Essential Services ff The Specifying alternate DNS servers recipe in Chapter 2, Essential Services Identifying and assigning interfaces This recipe describes how to identify a network configuration and assign the appropriate interfaces in pfSense Getting ready You'll need to identify the MAC address for each Ethernet port on your pfSense machine before attempting . 19
Chapter 2: Essential Services 23
Introduction 23
Conguring the DHCP server 24
Creating static DHCP mappings 26
Conguring the DHCP relay 28
Specifying. x0 y0 w0 h0" alt=""
pfSense 2 Cookbook
A practical, example-driven guide to congure even the
most advanced features of pfSense 2
Matt Williamson
BIRMINGHAM