[Last Call] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 188
  • Last Modified:

What's the ADSL device to use to host a software firewall on a normal PC

I have an ADSL modem that I would like to replace with a computer that has a firewall on it (Pfsense) and I would like to know what kind of device to use on this PC in order to connect to the ISP. Would a USB Modem or faxmodem work? or there's something else that work.

My ADSL Modem is connected with a normal PSTN line.

I would appreciate any suggestion.
0
Mohammed Hamada
Asked:
Mohammed Hamada
4 Solutions
 
Benjamin MOREAUProject ManagerCommented:
I think it will be better to use a modem with LAN interface. You will directly connect your "wan ethernet" of you computer to the "LAN interface" of the modem.
0
 
Otto_NCommented:
Basically, you have two types of ADSL devices - ADSL Routers (i.e. a Router with an ADSL uplink, which usually allow multiple PC's to connect the same Internet Access Point), and ADSL modems (a peripheral to a PC, which only allows the single PC access to the Internet Access Point).

You will need an ADSL modem that can connect to your PC.  And, as modems go, you may have the choice between internal or external modem.  You will then have to interconnect the PC with all the other devices you want to give internet access, and point them to the "Firewall PC" as default gateway to get their Internet access.

Note that a faxmodem (V.92) will not work, as it uses V.92 (over the voice channel on your PSTN line) to connect to the ISP POP, and not ADSL (that uses higher frequencies on the copper line, thereby increasing the bandwidth available.  You will need a modem that supports ADSL in particular.

You can use your existing ADSL router to accomplish this connectivity (as Benjamin stated above), but it depends on a couple of factors:  Do you want to use your existing ADSL router to interconnect the other computers in your domain (perhaps even via a WiFi Access Point)? This can be done if the router supports multiple VLANS, and if your Firewall PC have multiple LAN connections (or the ability to run 802.1Q trunking).  This is a bit more complex to set up, though...
0
 
Mohammed HamadaSenior IT ConsultantAuthor Commented:
The problem is that the ADSL modem restarts and sometimes doesn't work! and I'm also planning on hosting my own mail, ftp, communication servers and do some tests so I would like to publish those services on a dynamic IP that I have from my ISP. Pfsense has dynamic DNS feature that supports NOIP (Free dynamic dns service) and in the mean time I can use the FQDN for supporting all these services and the firewall for publishing the service and also filtering traffic..

If I get another ADSL Modem and connected one of its LAN port to my Firewall PC's WAN port and disabled static NAT of the firewall would that do the trick?

Thanks
0
Free Backup Tool for VMware and Hyper-V

Restore full virtual machine or individual guest files from 19 common file systems directly from the backup file. Schedule VM backups with PowerShell scripts. Set desired time, lean back and let the script to notify you via email upon completion.  

 
Otto_NCommented:
Yes, it should, although I'm not sure that you should disable the static NAT - The IP address on the LAN segment of the ADSL router would still be a Private address that must be NATed at some point to the PPPoA address the ADSL router gets assigned.  You should, however, turn of the firewall on the ADSL router, or configure it to permit anything, if you cannot disable it.

However, since you have to look at new hardware - If you can get an ADSL Modem (that can connect via USB to your Firewall PC), the modem interface would become the WAN port of your firewall software.
0
 
Mohammed HamadaSenior IT ConsultantAuthor Commented:
Is there any USB modem that matches the ADSL router capabilities? I donno what standards are both using or what's the exact similarities or differences between them both to be honest.

Also Is it not possible to NAT the ADSL Public IP to the (WAN) port IP of the Firewall directly without doing so to the internal (LAN) IP of the modem?
0
 
Otto_NCommented:
Yes, it's usually labelled "ADSL USB Modem" or something similar - Your ADSL provider (usually the Telco you get your phone line from) should have a list of approved modems and routers, or at least a specification of what the device should support.  They might even be able to supply you with one for free (usually in return for signing some kind of contract with them...)

There are some fundamental differences between an ADSL modem and ADSL Router - The ADSL modem only have two ports (Line & USB), and must be connected to a PC with the required software drivers to work.  The modem is actually a peripheral of the PC, and doesn't offer any LAN services.  The ADSL router, on the other hand, have more ports and operate in stand-alone mode.  It usually offers interconnectivity and Internet access via LAN ports.  However, on the ADSL side, they share the same options and specifications, although different models might support only some of the specs.  Note that, due to it's simpler function, modems should be cheaper than routers, in general.

Regarding the NAT question - Yes, you can do the NAT on the Firewall, if you configure PPPoE on the firewall PC, using the ADSL router only as a bridge.  It this way, the firewall will initiate the authentication with your ISP, and obtain a public IP from them via PPP.  How to configure the PPPoE depends on your OS.
0
 
PredragNetwork EngineerCommented:
And I have advice - stay away from USB modems.
:)
What's wrong with ADSL router and putting host for mail, ftp, communication servers in DMZ (or to do a port forward)???
0
 
Mohammed HamadaSenior IT ConsultantAuthor Commented:
Thanks everyone for your useful comments, I appreciate it
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Tackle projects and never again get stuck behind a technical roadblock.
Join Now