View Single Post
  #9   (View Single Post)  
Old 23rd January 2013
scrummie02 scrummie02 is offline
Port Guard
 
Join Date: Nov 2011
Posts: 27
Default

what are you looking to accomplish with clam? I use it in conjunction with havp/squid for a proxy/virus scanner solution.

All outbound HTTP traffic from my internal lan is filtered through squid and havp for to scan downloads. It works great.

For inbound you can do the same, set up a squid box for reverse proxy to provide some security. But if you're running and OpenBSD server with nginx chrooted you'll be fine - as long as your application's code is solid.

As someone noted, your publicly accessible boxes should be on your DMZ, if there is an internal service or app that needs to be reached from the outside set up either an ipsec vpn or OpenVPN.
Reply With Quote