Hi,
In order to secure my BPi-R1 I want to install a firewall on top of armbian.
So please, no tipps for complete 'firewall distribution like IPcop, IPfire'.
So I thought about, what is necessary to protect 'my cloud', which may be not the first interest for a hacker. My test candidates:
Open Edgewize
Shorewall
ConfigServer Security & Firewall (csf)
iptables (do it on your own)
I collected some information of their functions, but I don't know what is crucial.
Application Layer Filtering
Just managing your network by port numbers and ip addresses is no longer sufficient.
With the growing levels of web use, and http based applications, deep packet inspection is needed to properly manage your network securely.
User authentication (invite some friends to share pictures)
Blacklist
Whitelist
As the R1 can hold a HDD I want to load it with things like:
LAMP
http://ampache.org/ http://www.seafile.com/en/home/ http://syncthing.net/ https://sourceforge.net/projects/xbian/ OpenMediaVault may be testing owncloud
I would like to know, what is your take on that and how do you secure your devices?
Cheers
Tido