Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - stifferd

#1
21.7 Legacy Series / Re: Does BIND Do DNS over TLS?
October 29, 2021, 03:15:16 PM
That's a great idea!  I may just do that.  Thank you.
#2
21.7 Legacy Series / Does BIND Do DNS over TLS?
October 28, 2021, 10:33:06 PM
Unbound and DNSBL don't seem to work very well for me (crashes, unstable)

So, I'd like to move to BIND but I don't see any options for DNS over TLS in BIND.  Is it supported?

I know DNSBL is supported in BIND, but I'd really like to have DNS over TLS too.

Thank you!
Stefan
#3
Yeah I am now leaning toward that - I don't mind having a separate proxy machine.  Problem is finding an inexpensive solution.  Many Linux based anti virus is only available for business, so the cost is high.

I will see if my purchase for a single license for ESET security Gateway is approved.  I keep getting denied because I am in Canada for some reason, and I've yet to find a Canadian reseller that has it.

If I were to move to a totally separate box which would give me more freedom, are there any products that anyone would suggest?  I'd like to spend max a couple hundred bucks.  I'm just not seeing anything in that price range that'll do ICAP....
#4
Thank you!  Unfortunately the Linux version is only available with business edition which starts at $500 USD.  So I am now looking at ESET Security Gateway but not sure if it'll work.  It only lists FreeBSD 9 support.  I'm also having a hard time purchasing the ESET product in Canada. 

Any other vendors out there that do ICAP and work with proxy?
#5
Hi all,

Have any of you been successful using a paid version of antivirus software with ICAP?

I'd like something a little more robust than ClamAV if possible.


Sent from my iPhone using Tapatalk
#6
Hi Everyone,

I am curious about a few things:

Version: OPNsense 21.7.3_3-amd64 (suricata 6.0.3_2)


Do snort 3.x rules work with suricata 6.x?  If not, what 2.x version of Snort is recommended (I pay for a snort subscription)

I have also signed up for ET Telemetry - I see that the rules have downloaded fine (and they all say ET Telemetry) but when I created my policy, I didn't see any ET Telemetry entries in the list. I only saw ETpro entries which I have enabled.

I'm assuming that signing up for ET Telemetry and downloading and enabling those rules allows me to use the ETPro entries that show up policies?  The policies do not list any ET Telemetry rules, so I am confused.

Thank you so much.