3 ms·
Not OP, but the Protectli is just hardware and you install your own OS. So it is running your own computer with "scripting and such", just a separate low-power,
by ytjohn 5y ago
Not OP, but the Protectli is just hardware and you install your own OS. So it is running your own computer with "scripting and such", just a separate low-power, small footprint computer with dual NICs. This is good for managing network for your entire house/office/remote site.
I've got some PC-based firewalls like the Protecli. Mini-ITX, atom-based, 8gb ram. I can often find these for <$50 on auction sites. If it's one I'll be the main "owner" of, I like to run VyOS for firewall and routing. This is the open-source fork of Vyatta, and Ubiquiti's EdgeOS is a commercial sibling (granted, EdgeOS has or at least had some advantages over IPv6 PD). VyOS is debian arm based, so lots of packages like ZeroTier VPN can be added easily. I like VyOS/EdgeOS because of the full CLI/scriptable config.
I recently setup 3 of these for a radio club. These will live in mountaintop tower locations and provide VPN+NAT. Since these might get modified by others, I went with OPNSense. OPNSense is a fork of PFSense with a nice Web UI and community support.
- walrus01 5y ago> VyOS is debian arm based not to quibble too much but I think the bulk of vyos development takes place on x86-64 and the standard build-your-own-install ISO guide is for x86-64. Though it certainly can be compiled for various types of arm CPU. this is because if you want things like eight or ten 10GbE interfaces, or eight 10GbE and four 100GbE in one server, the only economically viable and fully stable platform for vyos right now is x86-64.
- ytjohn 5y agoRight you are. In fact, I was thinking of the EdgeOS on EdgeRouter, and I was wrong there as well, since that is actually mips64. https://www.debian.org/ports/mips/ https://www.debian.org/ports/mips/