Should I run 2 firewalls?

Started by Globgogabgalab, January 01, 2021, 06:25:35 PM

Previous topic - Next topic
I currently have a UniFI Firewall in place and I plan to get a OPNsense firewall mainly for a VPN.

Setup:
Modem - OPNsense - UniFI - VLANS (Rules made by UniFi)

Are there any advantages of running a setup with 2 firewalls or should I move everything to the new (more powerful) OPNsense firewall?

Thanks!

Depends on your needs and your configuration.
Two similar configured Firewalls don't increase security that much if you don't setup special monitoring or services on each box.

Maybe an a attack vector is mitigated by different operation systems kernels but at the same time the attack surface increases because you maybe can target two systems.

For a normal network I would go with one firewall and use the more powerful for VPN.
Twitter: banym
Mastodon: banym@bsd.network
Blog: https://www.banym.de