pfSense 2.x Cookbook: Manage and maintain your network using pfSense, 2nd Edition
暫譯: pfSense 2.x 食譜:使用 pfSense 管理和維護您的網路,第二版

David Zientara

  • 出版商: Packt Publishing
  • 出版日期: 2018-12-14
  • 售價: $2,010
  • 貴賓價: 9.5$1,910
  • 語言: 英文
  • 頁數: 298
  • 裝訂: Paperback
  • ISBN: 1789806429
  • ISBN-13: 9781789806427
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

商品描述

A practical, example-driven guide to configuring even the most advanced features of pfSense 2.x

Key Features

  • Build a high-availability fault-tolerant security system with pfSense 2.x
  • Leverage the latest version of pfSense to secure your cloud environment
  • A recipe-based guide that will help you enhance your on-premise and cloud security principles

Book Description

pfSense is an open source distribution of the FreeBSD-based firewall that provides a platform for ?exible and powerful routing and firewalling. The versatility of pfSense presents us with a wide array of configuration options, which makes determining requirements a little more difficult and a lot more important compared to other offerings.

pfSense 2.x Cookbook – Second Edition starts by providing you with an understanding of how to complete the basic steps needed to render a pfSense firewall operational. It starts by showing you how to set up different forms of NAT entries and firewall rules and use aliases and scheduling in firewall rules. Moving on, you will learn how to implement a captive portal set up in different ways (no authentication, user manager authentication, and RADIUS authentication), as well as NTP and SNMP configuration. You will then learn how to set up a VPN tunnel with pfSense. The book then focuses on setting up traffic shaping with pfSense, using either the built-in traffic shaping wizard, custom ?oating rules, or Snort. Toward the end, you will set up multiple WAN interfaces, load balancing and failover groups, and a CARP failover group. You will also learn how to bridge interfaces, add static routing entries, and use dynamic routing protocols via third-party packages.

What you will learn

  • Configure the essential pfSense services (namely, DHCP, DNS, and DDNS)
  • Create aliases, firewall rules, NAT port-forward rules, and rule schedules
  • Create multiple WAN interfaces in load-balanced or failover configurations
  • Configure firewall redundancy with a CARP firewall failover
  • Configure backup/restoration and automatic configuration-file backup
  • Configure some services and perform diagnostics with command-line utilities

Who this book is for

This book is intended for all levels of network administrators. If you are an advanced user of pfSense, then you can flip to a particular recipe and quickly accomplish the task at hand; if you are new to pfSense, on the other hand, you can work through the book chapter by chapter and learn all of the features of the system from the ground up.

Table of Contents

  1. Initial Configuration
  2. Essential Services
  3. Firewall and NAT
  4. Additional Services
  5. Virtual Private Networking
  6. Traffic Shaping
  7. Redundancy, Load Balancing, and Failover
  8. Routing and Bridging
  9. Services and Maintenance
  10. Backing Up and Restoring pfSense
  11. Determining Hardware Requirements

商品描述(中文翻譯)

**一本實用的、以範例為驅動的指南,配置 pfSense 2.x 的最先進功能**

#### 主要特點
- 使用 pfSense 2.x 建立高可用性容錯安全系統
- 利用最新版本的 pfSense 來保護您的雲端環境
- 一本基於食譜的指南,幫助您增強本地和雲端的安全原則

#### 書籍描述
pfSense 是一個基於 FreeBSD 的開源防火牆發行版,提供靈活且強大的路由和防火牆平台。pfSense 的多功能性為我們提供了廣泛的配置選項,這使得確定需求比其他產品更具挑戰性,但也更為重要。

《pfSense 2.x 食譜 - 第二版》首先讓您了解如何完成使 pfSense 防火牆運行所需的基本步驟。它從設置不同形式的 NAT 條目和防火牆規則開始,並使用別名和排程來管理防火牆規則。接下來,您將學習如何以不同方式實現捕獲門戶的設置(無身份驗證、用戶管理身份驗證和 RADIUS 身份驗證),以及 NTP 和 SNMP 配置。然後,您將學習如何使用 pfSense 設置 VPN 隧道。該書接著專注於使用 pfSense 設置流量整形,無論是使用內建的流量整形精靈、自定義浮動規則,還是 Snort。最後,您將設置多個 WAN 介面、負載平衡和故障轉移組,以及 CARP 故障轉移組。您還將學習如何橋接介面、添加靜態路由條目,並通過第三方套件使用動態路由協議。

#### 您將學習到的內容
- 配置基本的 pfSense 服務(即 DHCP、DNS 和 DDNS)
- 創建別名、防火牆規則、NAT 端口轉發規則和規則排程
- 在負載平衡或故障轉移配置中創建多個 WAN 介面
- 使用 CARP 防火牆故障轉移配置防火牆冗餘
- 配置備份/恢復和自動配置文件備份
- 配置某些服務並使用命令行工具進行診斷

#### 本書適合誰
本書適合所有級別的網路管理員。如果您是 pfSense 的高級用戶,您可以直接翻到特定的食譜,快速完成手頭的任務;如果您是 pfSense 的新手,則可以逐章閱讀本書,從基礎開始學習系統的所有功能。

#### 目錄
1. 初始配置
2. 基本服務
3. 防火牆和 NAT
4. 附加服務
5. 虛擬私人網路
6. 流量整形
7. 冗餘、負載平衡和故障轉移
8. 路由和橋接
9. 服務和維護
10. 備份和恢復 pfSense
11. 確定硬體需求