[UPDATE 1] I have bought a brand new firewall appliance in late Sep 2021 for only SGD$222 to run Snort IDS/IPS

Subject: [UPDATE 1] I have bought a brand new firewall appliance in late Sep 2021 for only SGD$222 to run Snort IDS/IPS


Good day from Singapore,


I have just bought a brand new firewall appliance for only SGD$222, which comes with pfSense community edition firewall pre-installed. pfSense firewall is based on FreeBSD. The firewall appliance is Made in China and ships internationally from China. My order was placed on Lazada on 19 Sep 2021 Sun at 4.46 PM Singapore Time. I received the firewall appliance in Singapore on 28 Sep 2021 Tue at 5:50 PM Singapore Time. International shipping cost from China to Singapore is about SGD$1.50.


I am planning to try out all the 10+ open source firewalls on my brand new firewall appliance. No open source firewall is complete without Snort Intrusion Detection System (IDS)/Intrusion Prevention System (IPS). Nowadays, an Intrusion Prevention System (IPS) is a must. I will need to check whether my pfSense firewall comes with Snort IDS/IPS pre-installed. If it isn't, I will manually install the package.


You can watch a short 4-minute video clip of my brand new firewall appliance on YouTube.


Title of YouTube video: Turritopsis Dohrnii Teo En Ming Unboxing His Brand New $222 Firewall Appliance on 28 Sep 2021 Tue

Link: https://www.youtube.com/watch?v=5LNzqCnkJHI


These are the technical specifications of my brand new firewall appliance.


Support DIY

Intel Celeron J3160 Quad Core (2M Cache, 1.60GHz up to 2.24GHz)

Intel HD Graphics 400

1 x DDR3L SO-DIMM Socket (Up to 8G, 1333/1600MHz)

4 x Intel Gigabit LAN

1 x VGA

1 x HDMI

1 x USB 3.0 + 1 x USB 2.0

1 x mSATA SSD Slot

1 x SATA Port, support 2.5'' HDD / SSD

Support Windows, Linux, Pfsense, OPNsense

support AES-NI

4 GB RAM installed

64 GB SSD installed


Aluminum Case Fanless Intel Celeron J3160 Quad Core Mini PC


with 4 Gigabit LAN,

VGA, HDMI,

USB 3.0

USB 2.0


1) This is Intel Celeron J3160 Quad Core Mini PC, without wifi module antenna

2) Intel Celeron J3160 Quad Core (1.6GHz Up To 2.24GHz 2M Cache)

3) 1 x DDR3L SO-DIMM Socket (Up to 8G, 1333/1600MHz)

4) 4 x Gigabit LAN

5) 1 x VGA + 1 x HDMI

6) 1 x USB 3.0 + 1 x USB 2.0

7) 1 x Mini-PCIe for mSATA SSD

8) 1 x SATA Port, support SATA SSD or 2.5 inch SATA HDD

9) Support Windows 7, Windows 8, Windows 10, Linux

10) 4 GB RAM installed

11) 64 GB SSD installed


Cooling Mode: Aluminum Case Fanless Design

CPU: Intel Celeron J3160 Quad Core (1.6GHz Up To 2.24GHz 2M Cache)

CPU TDP: 10W

Memory: 1 x DDR3L SO-DIMM Socket (Up to 8G, 1333/1600MHz)

Storage:

1 x mSATA

1 x SATA Port, support SATA SSD or 2.5 inch SATA HDD

Graphics: Intel HD Graphics

LAN Chipset: 4 x Intel I211 Gigabit LAN

WLAN: Optional

OS Support: Windows 7, Windows 8, Windows 10, Linux, pfSense

Security & Reliability: Support AES-NI (Intel AES New Instructions)

Port:

Front Port:

1 x Power Button (with indicator light)

2 x USB 3.0

1 x HDMI

1 x VGA

1 x RST Button

Back Port:

4 x Intel I211 Gigabit LAN

1 x 12V DC Power Jack

Material: Aluminum

Weight: 1.25KG

Power Adapter: DC 12V

Expansion: 1 x Mini-PCIE for SIM card

What's in Box:

1 x Mini PC

1 x Power Adapter

1 x Power Cable

4 GB RAM installed

64 GB SSD installed


Below is the System Information from the Dashboard of pfSense firewall.


System Information

==================


Name: 

pfSense.teo-en-ming-corp.com


User: 

admin@192.168.1.110 (Local Database)


System: 

pfSense

Netgate Device ID: 51194252252ab8defd14


BIOS: 

Vendor: American Megatrends Inc.

Version: 5.11

Release Date: Sun Jun 23 2019


Version: 

2.5.2-RELEASE (amd64)

built on Fri Jul 02 15:33:00 EDT 2021

FreeBSD 12.2-STABLE


Unable to check for updates


CPU Type: 

Intel(R) Celeron(R) CPU J3160 @ 1.60GHz

4 CPUs: 1 package(s) x 4 core(s)

AES-NI CPU Crypto: Yes (inactive)

QAT Crypto: No


Hardware cyrpto:


Kernel PTI:

Enabled


MDS Mitigation: 

Inactive


Uptime:

00 Hour 28 Minutes 29 Seconds


Current date/time: 

Wed Sep 29 7:10:27 +08 2021 (wrong date and time, unable to connect to NTP server without WAN connection yet)


DNS server(s):

127.0.0.1

8.8.8.8

8.8.4.4


Last config change:

Wed Sep 29 6:46:48 +08 2021 (wrong date and time, unable to connect to NTP server without WAN connection yet)


State table size:

0% (260/394000)


MBUF Usage:

0% (3600/1000000)


Temperature:

26.9°C


Load average:

0.24, 0.28, 0.24


CPU usage:

2%


Memory usage:

7% of 3944 MiB


SWAP usage:

0% of 2689 MiB


Disk usage:

/:

2% of 55GiB - ufs


/var/run:

3% of 3.4MiB - ufs in RAM


List of open source firewalls which you can try on this firewall appliance

==========================================================================


(A) 8 Best Open Source Firewall to Protect Your Network


Link: https://geekflare.com/best-open-source-firewall/


(B) Top 10 Best Open Source Firewall to Protect Your Enterprise Network 2021


Link: https://cybersecuritynews.com/best-open-source-firewall/


(C) 12 Best Open Source Firewalls Comparable to Commercial Solutions


Link: https://www.networkstraining.com/best-open-source-firewalls/


(D) List of Top 12 Open Source Firewalls in 2020


Link: https://www.knowledgenile.com/blogs/open-source-firewalls/


(E) Top 9 Best Free and Open Source Firewall Software For Windows and linux


Link: https://cloudsmallbusinessservice.com/blog/top-9-best-free-and-open-source-firewall-software-for-windows-and-linux-69022.html


(F) Open Source Firewalls: The Best in the Business


Link: https://www.opensourceforu.com/2018/12/open-source-firewalls-the-best-in-the-business/


I am wondering if my super duper cheap brand new firewall appliance is able to run Snort IDS/IPS under heavy workloads. Can I install a SIM card in the firewall appliance for 4G connectivity?


Mr. Turritopsis Dohrnii Teo En Ming, 43 years old as of 29 Sep 2021, is a TARGETED INDIVIDUAL living in Singapore. He is an IT Consultant with a System Integrator (SI)/computer firm in Singapore. He is an IT enthusiast.





REFERENCES

==========


[1] https://lists.freebsd.org/archives/freebsd-chat/2021-September/000006.html


[2] https://marc.info/?l=freebsd-chat&m=163300630509383&w=2


[3] https://markmail.org/search/?q=teo%20en%20ming#query:teo%20en%20ming%20order%3Adate-backward+page:1+mid:47tz42kilwastdgh+state:results

[4] https://www.mail-archive.com/freebsd-chat@freebsd.org/msg04090.html


Comments

Popular posts from this blog

[24 Mar 2022 Thursday] Erectile Dysfunction and Viagra

Patching Linux Kernel 5.5.7 to Add Support for AUFS Filesystem