Hi all:
I have implemented a Mikrotik RB2011 series router/firewall that works great with the exception that I have realized the Mikrotik firewall is very lacking compared to the UTM firewall that was on the old Fortinet router/firewall. I'm thinking of taking a mini PC and installing UTM 9 software firewall on it. Then using that UTM 9 software firewall computer/device between my Internet connection and my Mikrotik router/firewall which serves DHCP, performs NAS, queuing, etc. (all the stuff the Mikrotik does well).
Have any of you ever attempted such a configuration to combine UTM with a Mikrotik device before? Should I turn the firewall in the Mikrotik completely off and just use it as the router (dhcp server, qos, etc.) and let the Sophos UTM software firewall do it's thing as the sole perimeter firewall? In summary, separate out the firewall from the router. Which is how we do things on the big complex telecom networks.
In addition to the base needs of a firewall which I'm sure this Sophos software firewall can do well, the reason I want to use the Sophos is to block remote access applications (Teamviewer primarily, it's a threat to my network. Please don't say that this remote access software policing a policy issue. For certain reasons, I can't control every computer in our work space. But I don't want Teamviewer to work behind my firewall on my network (even my guest network, I don't want remote access software to work). On the old Fortinet, blocking Teamviewer and a range of applications was a 10 minute configuration task.
I can block websites OK on the Mikrotik router, but even Mikrotik themselves don't seem to have a clue how to block the Teamviewer app (been a question on their forum for going back probably 10 years without a valid answer. Amazing). I've seen the most nonsense I've seen on a topic with regards to trying to get the Mikrotik firewall to successfully block the Teamviewer app. Most of the people on the Mikrotik community board have no idea about proper security. They are just interested in getting retail Internet to as many downstream clients as possible.
If someone that has some knowledge of pairing the of the Sophos UTM firewall with a standard router appliance at the perimeter of the network it would be appreciated. Specifically, if they could guide on how I can set up the Sophos software firewall to block Teamviewer? Also, how would I do the NAT for my internal applications. Just do NAT on the Sophos software firewall and turn off the NAT on the Mikrotik?
Thanks for your help and time. Appreciated.
This thread was automatically locked due to age.