fitlet2-firebox is a complete and well tested mini fanless firewall appliance based on the proven and open source pfSense® firewall distribution. Besides excellent firewall features Fitlet2-firebox Pro is great as virus/spam/traffic filter for mail and other internet traffic. It will outperform many commercial available security appliances.
Fitlet2-firebox pro G2 comes with a fast fitlet2-Atom X5-E3930 (Dual Core), 4GB of RAM, fast 32GB M.2 SATA SSD, 2x 1Gbit LAN ports and preinstalled PFSense 2.4.x.
Fitlet2-firebox Appliance Features
Fitlet2-firebox is based on the open-source pfSense® software and is a highly configurable, full-featured solution with security options that you normally will find in an enterprise class security appliance.
Applications
-
VPN Server
-
High Availability
-
Load Balancing
-
Traffic Shaping
-
Captive Portal
-
UTM Device
-
Firewall / Router
-
DNS / DHCP Server
-
IDS / IPS
-
Transparent Caching Proxy
-
Web Content Filter
-
And more ...
Features
Firewall and Router
-
Stateful Packet Inspection (SPI)
-
GeoIP blocking
-
Anti-Spoofing
-
Time based rules
-
Connection limits
-
Dynamic DNS
-
Reverse proxy
-
Captive portal guest network
-
Supports concurrent IPv4 and IPv6
-
NAT mapping (inbound/outbound)
-
VLAN support (802.1q)
-
Configurable static routing
-
IPv6 network prefix translation
-
IPv6 router advertisements
-
Multiple IP addresses per interface
-
DHCP server
-
DNS forwarding
-
Wake-on-LAN
-
PPPoE Server
VPN
-
IPsec and OpenVPN
-
Site-to-site and remote access VPN support
-
SSL encryption
-
VPN client for multiple operating systems
-
L2TP/IPsec for mobile devices
-
Multi-WAN for failover
-
IPv6 support
-
Split tunneling
-
Multiple tunnels
-
VPN tunnel failover
-
NAT support
-
Automatic or custom routing
-
Local user authentication or RADIUS/LDAP
Intrusion Prevention System
-
Snort-based packet analyzer
-
Layer 7 application detection
-
Multiple rules sources and categories
-
Emerging threats database
-
IP blacklist database
-
Pre-set rule profiles
-
Per-interface configuration
-
Suppressing false positive alerts
-
Deep Packet Inspection (DPI)
-
Optional open-source packages for application blocking
Enterprise Reliability
-
Optional multi-node High Availability Clustering
-
Multi-WAN load balancing
-
Automatic connection failover
-
Bandwidth throttling
-
Traffic shaping wizard
-
Reserve or restrict bandwidth based on traffic priority
-
Fair sharing bandwidth
-
User data transfer quotas
User Authentication
-
Local user and group database
-
User and group-based privileges
-
Optional automatic account expiration
-
External RADIUS authentication
-
Automatic lockout after repeated attempts
Proxy and Content Filtering
-
HTTP and HTTPS proxy
-
Non Transparent or Transparent caching proxy
-
Domain/URL filtering
-
Anti-virus filtering
-
SafeSearch for search engines
-
HTTPS URL and content screening
-
Website access reporting
-
Domain Name blacklisting (DNSBL)
-
Usage reporting for daily, monthly, etc.
Administration
Configuration
-
Web-based configuration
-
Setup wizard for initial configuration
-
Remote web-based administration
-
Customizable dashboard
-
Easy configuration backup/restore
-
Configuration export/import
-
Variable level administrative rights
-
Multi-language support
-
Simple updates
-
Forward-compatible configuration
-
Serial console for shell access and recovery options
System Security
-
Web interface security protection
-
CSRF protection
-
HTTP Referer enforcement
-
DNS Rebinding protection
-
HTTP Strict Transport Security
-
Frame protection
-
Optional key-based SSH access
Reporting & Monitoring
-
Dashboard with configurable widgets
-
Local logging
-
Remote logging
-
Local monitoring graphs
-
Real-time interface traffic graphs
-
SNMP monitoring
-
Notifications via web interface, SMTP, or Growl
-
Hardware monitoring
-
Networking diagnostic tools