The DGS Firewall has been specifically designed for small to medium sized business with high security demands. The DGS Firewall has been proven to protect companies against serious DoS attacks and stealth scans. With many more features you can be sure that your network is secure from the outside as well as the inside.
DGS Firewall Features:
Very secure stateful filtering firewall Both kernel 2.4 & 2.6 support It can be used for both single- and multi(eg. dual)-homed boxes Masquerading (NAT) and SNAT support Multiple external (internet) interfaces Support multi route NAT & SNAT (load balancing over multiple (internet) interfaces) Port forwarding (NAT) Support MAC address filtering Support for DSL/ADSL modems Support for PPPoE, PPPoA and bridging modem setups Support for static and ISP assigned (DHCP) IPs Support for (transparent) proxies Full support for DMZ's and DMZ-2-LAN forwarding. (Nmap)(stealth) portscan detection Protection against SYN-flooding (DoS attacks) Protection against ICMP-flooding (DoS attacks) Extensive user-definable logging with rate limiting to prevent log flooding Includes options to optimize your throughput User definable open ports, closed ports, trusted hosts, blocked hosts etc. Log & protection options are both highly customizable Support for custom iptables rules in a separate file It can be used with chkconfig run level system (eg. Red Hat/Fedora) Main focus on TCP/UDP/ICMP but additional support for *ALL* IP protocols It works with Freeswan IPSEC (VPN) & SSH Sentinel (.freeswan.org)(+virtual IP's) It works with PoPTop PPTP (http://www.poptop.org) It works with UPnP