*ast Firewall – Next Generation Firewall for Your Business
Whether you run small business or large enterprise, your network security can get overwhelmed by operational disarrays, unseen cyber threats and regulatory demands. To secure your business network,*ast Firewall is an ideal solution for every business sizes which gives comprehensive security solutions to protect your network against ransomware, malware, intrusion, unwanted application, spam, spyware, policy abuse and data leakage.
*ast Firewall is an open-source, easy-to-use and easy-to-build hardened BSD based firewall and routing platform. *ast Firewall is very feature rich and has much more to offer than its competitors. *ast Firewall can filter traffic on source, destination and protocol as well as port on number (TCP/UDP), Operating System Fingerprinting (OSFP). Advanced passive OS fingerprinting technology can be used to allow or block traffic based by the Operating System initiating the connection. *ast Firewall’s features offered can be configured through responsive user interface. The user interfaces support multi-language with in-built help to get you started quickly.
Key features
Traffic Shaper
Traffic shaping within *ast Firewall is very flexible and is organised around pipes, queues and corresponding rules. Bandwidth limitations can be defined based upon the interface(s), IP source & destination, direction of traffic (in/out) and port numbers (application).
Stateful inspection firewall
Stateful firewall with support for IPv4 and IPv6 and live view on blocked or passed traffic.
Two-Factor Authentication
*ast Firewall offers support for Two-factor authentication throughout the entire system, with Time-based One-time Password (TOTP) and Google Authenticator for user interface, VPN and other services
Virtual Private Network (VPN):
*ast Firewall offers a wide range of VPN technologies ranging from modern SSL VPN’s to well known IPsec as well as older (now considered insecure) legacy options such as L2TP and PPTP. Supports both Open VPN as well as Ipsec.
Inline Intrusion Prevention System
The inline IPS system of *ast Firewall is based on Suricata and utilises Netmap to enhance performance and minimize CPU utilisation. This deep packet inspection system is very powerful and can be used to mitigate security threats at wire speed.
High Availability / Hardware Failover
*ast Firewall utilises the Common Address Redundancy Protocol or CARP for hardware failover. Two or more firewalls can be configured as a failover group. If one interface fails on the primary or the primary goes offline entirely, the secondary becomes active.
System Health & Information:
*ast Firewall analyse your system health with a dynamic view on Robin Round Data. It allows you to dive into different statistics that show the overall health and performance of the system over time.
Monitoring & Reporting :
*ast Firewall is the only open source solution with a build-in Netflow analyser integrated into it’s Graphical User Interface (GUI).
*ast Firewall also allows automatic backups of configuration changes make it possible to review history and restore previous settings.
Other Features
Other features include Captive Portal, Web Filter, caching Proxy and much more