NethSecurity 8.3, a distribution for creating network firewalls based on the NethServer platform and designed for quick deployment of a network firewall, has been published. In addition to packet filtering, it provides capabilities for detecting and preventing intrusions, anti-virus scanning, ad blocking, prioritizing different types of traffic, deep packet inspection (DPI), and content filtering. Deployed in a corporate network, NethSecurity can also selectively block Netflix, YouTube, TikTok, Instagram, Facebook, and other services that can distract employees from work. The size of the bootable image in compressed form is 52 MB.
The platform is built as a complete solution that can be used for installation on physical servers and virtual machines, as well as for creating bootable USB drives that turn any computer into a firewall. It supports tunneling via IPsec and OpenVPN, deployment of wireless access points, operation via multiple external Internet connection channels (MultiWAN).
Management and administration are carried out via a web interface, which, among other things, provides options for creating/restoring configuration backups, resetting to factory settings, managing update installation, and connecting via SSH (web interface for the SSH client). When used in an infrastructure servers The NethServer distribution allows for centralized remote management of all NethSecurity hosts via the NethServer interface, as well as connection to a common monitoring and log collection system.
Among the changes in the new version:
- The package database is synchronized with the OpenWrt 23.05.5 distribution.
- Tools for centralized management of update installation have been implemented (from the NethSecurity Controller control node, you can install updates for individual packages and the entire system image on other nodes).

- A dashboard page has been added to the web interface for real-time monitoring.

- The NethSecurity Controller control node now provides the ability to view the history of monitoring events.

- Threat Shield settings now include tools for working with the local block list, block log, and brute force protection settings

- Added page with address translator settings.

- A field has been added to the network port forwarding settings to restrict access for certain types of objects.

- Added packages with utilities for KVM and VMware virtualization systems.
- Anonymous collection of telemetry about system usage has been implemented.
- Work has been carried out to improve the usability of the web interface and improve navigation.
Source: opennet.ru






