Asusrouterlover
Regular Contributor
I would like to deploy pfsense with my Asus router for extra protection from trojan and IDS / IPS do I need to do this or Asus Router don't need this setup ?
I really do not feel that pfsense would give you any more security. An Asus router is pretty good the way it is. Install the Merlin firmware and there are a lot more things you can do. You need to ask yourself if it is worth the effort. You also need to stay away from dangerous browsing and networking habits.I would like to deploy pfsense with my Asus router for extra protection from trojan and IDS / IPS do I need to do this or Asus Router don't need this setup ?
thanks for tipI rea
I really do not feel that pfsense would give you any more security. An Asus router is pretty good the way it is. Install the Merlin firmware and there are a lot more things you can do. You need to ask yourself if it is worth the effort. You also need to stay away from dangerous browsing and networking habits.
I am not sure but this process will make it more packet delay ?If pfsenes' IDS / IPS works both inbound and outbound like Untangle's UTM does then maybe more security as I think ASUS would not. It takes more CPU cycles for outbound scanning.
Let me know if I am wrong.
I got buy with the $50 license as I did not need the advance features for my home use.IDS/IPS is not very effective with today's encrypted traffic, unless you run network wide proxy on your firewall and with some associated with it complications. It can be done on pfSense or Untangle firewall, but not on Asus routers. For true Gigabit IDS/IPS x86 multi-core CPU is needed with multi-threaded package like Suricata. Home routers don't have required CPU processing power for this. In addition to Snort/Suricata some DNS/IP filtering (pfBlocker in pfSense) is an option. pfSense needs networking knowledge. Untangle is easier, but not free - $150/y home license. Powerful multi-option router OS or packages may break the network easily. Home routers are much cheaper and more user-friendly option.
It is cheaper than an ASUS router.
Ridiculous waste of money!
The majority of people do not run 1 ASUS router for 5 years. They upgrade more often which is what ASUS wants.No, it's not. 5y x $50 in fees only = RT-AX86U
You have to calculate the cost of hardware too. Untangle needs x86 appliance. They don't come for free.
Not really, if you want "easy". Firewalla Gold is other option with no license fees and hardware included.
I ran my Untangle on a left-over Xeon server motherboard in my rack.
You can't use your router for routing as all your traffic will be scanned and slowed down for local LAN traffic.
ASUS and Netgate don't scan outbound traffic. I am not sure pfsense does, but I don't know for sure. When I ran it, it did not scan outbound traffic. Untangle is a higher-level firewall. This would probability be true for all enterprise level firewalls.How many people have left-over Xeon server in their racks? Most need to purchase hardware to run Untangle. It doesn't come for free.
Not clear what are you talking about. My home router is a Netgate firewall, for example. It scans/filters only the traffic I want to be scanned/filtered.
ASUS and Netgate don't scan outbound traffic.
Welcome To SNBForums
SNBForums is a community for anyone who wants to learn about or discuss the latest in wireless routers, network storage and the ins and outs of building and maintaining a small network.
If you'd like to post a question, simply register and have at it!
While you're at it, please check out SmallNetBuilder for product reviews and our famous Router Charts, Ranker and plenty more!