Short description
The Endian Firewall is a turnkey Linux Security Distribution, which is an independent, unified security management solution. The Endian Firewall is based on a hardened Linux operating system. The system is installed on a PC using a boot CD and can be operated without a monitor through its online interface or via a keyboard in a command-line fashion. The server can be configured via a web interface or via the serial interface.The main task of Endian Firewall is a gateway, router and firewall, and can act as a proxy for web, email, FTP, SIP and DNS. Up to four different networks (dependent on the number of network cards installed in the host PC) are normally managed.Networks are configured through the web interface. With Endian these are differentiated by their color coding:
- Red Network: connection to the insecure Internet.
- Green Network: Secure intranet e.g. file server.
- Orange Network: Part Safe Demilitarized Zone (DMZ) . This includes devices that operate their own server and must be accessible over the Internet, such as Web or FTP servers.
- Blue Network: Secure wireless part, here on wireless devices can be connected. Thus, they are separated from the green network, which increases its security.
License
Behind the Endian Firewall is the Italian Endian Spa from Appiano, South Tyrol and a community of volunteer developers and helpers. The license model of Endian provides a commercial version and a free version:- The commercial version can be purchased either as a standalone software (the product is called Endian or simply Endian UTM Software) in order to install them on their own PCs, as well as in the form of finished Out of the Box - firewalls, with special hardware on which the software is preinstalled. There are currently seven hardware variants with different performance and for different network sizes: Mini 25, Mercury 50, Mercury 100, Macro 250, Macro 500, Macro 1000 and Macro 2500.
- Both the free Endian Firewall Community and the commercial Endian UTM Software are tailored for installation on your own hardware. The Endian Firewall Community is licensed under the GPL and is therefore open source software that can be downloaded for free. The community version does not include support and not all the features of the commercial version are available.
Featured
The current version includes the following key features:Gateway
- Ethernet support
- Load Balancing
- Traffic Shaping / Quality of Service
- Multiple uplinks
- Uplink failover
Firewall & Security
- Firewall (both directions)
- Demilitarized Zone
- Intrusion Detection System / Intrusion Prevention System
- Web-, FTP- and E-Mail-antivirus
- Antispam
- Content Filter
- HTTPS- Web interface
- SSH- Access and Forwarding
- Scheduler for automated backups
Server Services
- Transparent HTTP, HTTPS, FTP, SMTP and POP3-Proxy server
- Caching DNS-Server
- DHCP-server (separately for the green, blue and orange network)
- Network Address Translation
- Virtual Private Network (VPN) Gateway with OpenVPN or IPsec
- NTP-Server
- Policy-Based Routing (port, MAC address, protocol or port)
- Generic SNMP support
- VLAN support (IEEE 802.1Q trunking)
User Management
- Local
- RADIUS
- LDAP
- Active Directory
- NTLM Single Sign-On
- User or group as HTTP proxy content filter rules
Logging & Monitoring
- Visualized Live Log Viewer (AJAX based), see figure "The web interface of Endian Firewall"
- Log the activities and the stress of network and hardware
- Connection statistics
- Forwarding possibility of logs to an external syslog server
- ntopng integration
- Event-based notifications by e-mail
Others
- Support Software-RAID