John Connor
Lifer
Check out this nifty thing! https://netgate.com/products/sg-1000.html
Looks very cool. I just want the device though, no need for of sense gold
I had asked Netgate some questions and have not received an E-mail from them. Can anyone answer these two questions?
Can I change the WAN MAC address in this appliance?
Can I block countries in this appliance?
I'm not a fan of VMing a firewall, unless you have a separate VM server with two NICs that is strictly acting as a gateway VM server. You can do "router on a stick" as a firewall but it just does not feel right to me. I always like having real physical separation between inside and outside. It is less error prone.
The mac address thing is likely due to the vm, but now you know it's in there.
If the ports are not open in first place I'm not sure if snort would actually see it. Though I could be wrong.