W
W
warlock96002019-08-19 09:21:11
linux
warlock9600, 2019-08-19 09:21:11

Which virtual router / firewall to choose for the cloud?

To all readers - good time of the day!
The essence of the problem is that we have leased resources in the cloud. Cloud powered by VMware vCloud.
And we need a good firewall/router/VPN hub there.
Now we are using the built-in vCloud EdgeGateway and VyOS Router.
EdgeGateway does not like the lack of normal control through the CLI and almost zero functionality in terms of VPN
. VyOS does not like the fact that it is a rolling release, and with some frequency there are incomprehensible and strange bugs.
And I would like it to be simple, convenient, with rich functionality, and also fit into the concept of InfrastructureAsACode - stored in a git and deployed using Ansible, or possibly a built-in control system with versioning support. It may not have given up to us admins, but we don’t have enough strength to convince those in power.
In addition to the above, we looked at pfSense, Mikrotik CHR, the above VyOS and the idea of ​​pure Linux with the installation of all services there. So far, I like clean linux the most, but it has its own nuances.
If anyone has experience with this kind of problem, please share.
I would be very happy to learn about the experience of solving similar problems.

Answer the question

In order to leave comments, you need to log in

4 answer(s)
2
20ivs, 2019-08-19
@20ivs

that pfSense, that Mikrotik CHR completely solve all your tasks.

E
EvilSide, 2019-08-19
@EvilSide

Taking my experience into account, pure Linux (CentOS, FreeBSD) is the most stable in this kind of work. But it's not convenient for me to set up.
The most multifunctional and easiest to keep in one environment is Mikrotik, but there are problems getting used to the interface, since it is not the most convenient (IMHO) and there are FREQUENT security problems.
Kerio Control, the most praised by my friends, everything seems to be not bad, but from personal experience I have bad memories of stability with it and also an interface that put me in a stupor (back IMHO)

D
Drno, 2019-08-21
@Drno

I would also lean towards Mikrotik. But from the free one - Zeroshell

A
Aleksey Grishchuk, 2019-09-02
@Patap

Pfsense, OPNsense, zentyal, Univention Corporate Server (UCS)

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question