THe solution is used as a primary gateway with two lease lines of 450 Mbps total. Around 200 users are under it. There is no server or database in the environment. Users use only the internet extensively. We have three separate locations in the same building. Web filtering, IDS/IPS are the obvious requirements. Squid and Snort open-source packages are installed. Our organization is ISO 27001 certified. An active directory was implemented to control IAM. Synology NAS with RAID for file sharing and off-premise data backup on the cloud. We have mostly L-2 switches to connect nodes. Endpoint security product is another layer of security there.
THe solution is used as a primary gateway with two lease lines of 450 Mbps total. Around 200 users are under it. There is no server or database in the environment. Users use only the internet extensively. We have three separate locations in the same building. Web filtering, IDS/IPS are the obvious requirements. Squid and Snort open-source packages are installed. Our organization is ISO 27001 certified. An active directory was implemented to control IAM. Synology NAS with RAID for file sharing and off-premise data backup on the cloud. We have mostly L-2 switches to connect nodes. Endpoint security product is another layer of security there.
I am using Netgate TNSR for personal network security.