Mastering pfSense

David Zientara

  • 出版商: Packt Publishing
  • 出版日期: 2016-08-31
  • 售價: $1,890
  • 貴賓價: 9.5$1,796
  • 語言: 英文
  • 頁數: 406
  • 裝訂: Paperback
  • ISBN: 1786463431
  • ISBN-13: 9781786463432
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

商品描述

Key Features

  • You can always do more to secure your software – so extend and customize your pfSense firewall
  • Build a high availability security system that's fault tolerant – and capable of blocking any threats
  • Put the principles of better security into practice – unlock a more stable and reliable firewall

Book Description

pfSense has the same reliability and stability as even the most popular commercial firewall offerings on the market – but, like the very best open-source software, it doesn't limit you. You're in control – you can exploit and customize pfSense around your security needs.

If you're familiar with pfSense you probably knew that already. This book builds on any knowledge you may already have, and provides you with a clear route to expand your skills and pfSense's capabilities. You'll learn how to customize and configure pfSense to construct a firewall that can protect you from any potential security threats. Find out how to set up a VPN, and build a high-availability system that provides redundancy and fault tolerance – essential when security and software performance are so interdependent.

With further guidance on how to use a diverse range of third-party packages – all of which will help you unlock more from pfSense, this book covers everything you need - and more – to get a high-quality, reliable firewall up and running for a fraction of the cost.

What you will learn

  • Configure pfSense services such as DHCP, Dynamic DNS, captive portal, DNS, NTP and SNMP
  • Set up a managed switch to work with VLANs
  • Use pfSense to allow, block and deny traffic
  • Make use of the traffic shaper to lower and raise the priority of certain types of traffic
  • Set up and connect to a VPN tunnel with pfSense
  • Incorporate redundancy and high availability by utilizing load balancing and the Common Address Redundancy Protocol (CARP)
  • Explore diagnostic tools in pfSense to solve network problems

About the Author

David Zientara is a software engineer and IT professional living in northern New Jersey. He has 20 years of experience in IT and has been an enthusiastic supporter of the free and open source software (FOSS) community throughout his career, beginning with his first foray into the open source world with Slackware Linux in 1995.

In the mid-1990s, David became lead software engineer for Oxberry LLC, a digital imaging company headquartered in New Jersey. In this capacity, he played a major role in developing a new software package for the company's film scanners for Windows while also helping maintain Oxberry's legacy software, which had been developed for the SGI IRIX platform. He continued in this role for many years and continues to play a part in software development for Oxberry's corporate successor.

In the mid-2000s, David took an interest in computer networking, an interest that led him to learn about m0n0wall and, eventually, pfSense, a fork of the m0n0wall project. His interest in pfSense prompted him to create a pfSense website, http://pfsensesetup.com/, in June 2013.

Table of Contents

  1. pfSense Essentials
  2. Advanced pfSense Configuration
  3. Working with VLANs
  4. pfSense as a Firewall
  5. Traffic Shaping
  6. Virtual Private Networks
  7. Redundancy and High Availability
  8. Routing and Bridging
  9. Extending pfSense with Packages
  10. Troubleshooting pfSense

商品描述(中文翻譯)

主要特點



  • 您可以隨時加強軟體的安全性 - 因此擴展並自訂您的 pfSense 防火牆

  • 建立一個具有容錯能力的高可用性安全系統 - 能夠阻擋任何威脅

  • 將更好的安全原則付諸實踐 - 解鎖更穩定可靠的防火牆

書籍描述


pfSense 具有與市場上最受歡迎的商業防火牆產品相同的可靠性和穩定性 - 但是,就像最好的開源軟體一樣,它不會限制您。您有控制權 - 您可以根據您的安全需求利用和自訂 pfSense。


如果您熟悉 pfSense,您可能已經知道這一點。本書建立在您可能已經擁有的任何知識基礎之上,並為您提供了擴展技能和 pfSense 功能的清晰路徑。您將學習如何自訂和配置 pfSense,以構建一個可以保護您免受任何潛在安全威脅的防火牆。了解如何設置 VPN,並構建具有冗餘和容錯能力的高可用性系統 - 在安全性和軟體性能如此相互依賴時至關重要。


通過進一步指導如何使用各種第三方套件 - 所有這些都將幫助您從 pfSense 中解鎖更多功能,本書涵蓋了您所需的一切 - 並且更多 - 以節省成本運行高品質可靠的防火牆。

您將學到什麼



  • 配置 pfSense 服務,如 DHCP、動態 DNS、捕獲門戶、DNS、NTP 和 SNMP

  • 設置管理型交換機以與 VLAN 一起使用

  • 使用 pfSense 允許、阻止和拒絕流量

  • 利用流量整形器降低和提高特定類型流量的優先級

  • 設置並連接到 pfSense 的 VPN 隧道

  • 通過使用負載平衡和常用地址冗余協議(CARP)實現冗餘和高可用性

  • 探索 pfSense 中的診斷工具以解決網絡問題

關於作者


David Zientara 是一位居住在新澤西北部的軟體工程師和 IT 專業人員。他在 IT 領域擁有 20 年的經驗,並在整個職業生涯中一直是自由和開源軟體(FOSS)社區的熱情支持者,從 1995 年開始他首次接觸 Slackware Linux 的開源世界。


在 1990 年代中期,David 成為位於新澤西的數碼影像公司 Oxberry LLC 的首席軟體工程師。在這個職位上,他在為該公司的 Windows 電影掃描儀開發新軟體包的同時,還幫助維護 Oxberry 的遺留軟體,該軟體是為 SGI IRIX 平台開發的。多年來,他一直在這個職位上工作,並繼續參與 Oxberry 的企業繼任者的軟體開發。


在 2000 年代中期,David 對計算機網絡產生了興趣,這個興趣使他了解到 m0n0wall,最終發現了 m0n0wall 項目的分支 pfSense。他對 pfSense 的興趣促使他在 2013 年 6 月創建了一個 pfSense 網站,http://pfsensesetup.com/。

目錄



  1. pfSense 基礎知識

  2. 高級 pfSense 配置

  3. 使用 VLAN

  4. pfSense 作為防火牆

  5. 流量整形

  6. 虛擬私人網絡

  7. 冗餘和高可用性

  8. 路由和橋接

  9. 使用套件擴展 pfSense

  10. 故障排除 pfSense