Mailing List ArchiveSupport open source code!
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]Re: Broadband Router/Firewall
- To: tlug@example.com
- Subject: Re: Broadband Router/Firewall
- From: Stephen Lee <sl@example.com>
- Date: Mon, 03 Sep 2001 08:53:52 +0900
- Content-Transfer-Encoding: 7bit
- Content-Type: text/plain; charset="US-ASCII"
- Delivered-To: tlug@example.com
- In-Reply-To: <Pine.GSO.4.05.10109021134150.18641-100000@example.com>
- List-Help: <mailto:tlug-request@example.comsubject=help>
- List-Post: <mailto:tlug@example.com>
- List-Subscribe: <mailto:tlug-request@example.comsubject=subscribe>
- List-Unsubscribe: <mailto:tlug-request@example.comsubject=unsubscribe>
- Old-Return-Path: <sl@example.com>
- References: <20010903001112.13DC.SL@example.com> <Pine.GSO.4.05.10109021134150.18641-100000@example.com>
- Reply-To: Stephen Lee <sl@example.com>
- Resent-From: tlug@example.com
- Resent-Message-ID: <paOVLD.A.4NG._Ysk7@example.com>
- Resent-Sender: tlug-request@example.com
"Scott M. Stone" <sstone@example.com> wrote: > On Mon, 3 Sep 2001, Stephen Lee wrote: > > > 1. Is Stateful Inspection worth the extra 15,000 yen or so? Should I > > forget it and just get a cheap NAT/Masq box? > > on the one hand, $150 extra for stateful inspection sounds like a good > deal, but on the other hand, unless you've got static IPs with servers on > them behind that router, it probably doesn't matter - for outbound-only > traffic from your internal network, the masquerading/NAT should be > adequate protection since none of those boxes have public IP addresses. I do plan to have some kind of inbound connection, but probably just to myself at first. The IP I get is global and is fairly static (i.e. it hasn't changed since the last few days through much power-cycling) so I am concerned about scans. > > 2. Anyone has experience with Allied Telesis's AR320? It seems to be the > > most featureful but has only 10Mbps interfaces on both sides, so I am > > worried about its throughput. > > If you're getting DSL in japan that can saturate a 10 megabit link, I'm > moving back there :) I seriously doubt it'd be a problem otherwise. You can get Usen's FTTH if you live in the right area (100Mbps both ways) and in practice you get about 5Mbps or so to the internet (and I suppose more if you access Usen's internal servers). But the interface speed is not the problem, it is the routing throughput. Some of the cheap NAT boxen can barely do 2Mbps and that is with packet filtering. So I'm wondering if the AR320 (which does stateful inspection) is powerful enough. Stephen
- Follow-Ups:
- Re: Broadband Router/Firewall
- From: Gregory Tucker <tuckerg@example.com>
- References:
- Broadband Router/Firewall
- From: Stephen Lee <sl@example.com>
- Re: Broadband Router/Firewall
- From: "Scott M. Stone" <sstone@example.com>
Home | Main Index | Thread Index
- Prev by Date: Re: pump failing to obtain IP
- Next by Date: New to Linux.
- Prev by thread: Re: Broadband Router/Firewall
- Next by thread: Re: Broadband Router/Firewall
- Index(es):
Home Page Mailing List Linux and Japan TLUG Members Links