Help - Search - Member List - Calendar
Full Version: Setting my company Internet and Intranet
Lowyat.NET > Special Interest > Networks and Broadband > Networking Tech Support
binks
Hi guys.

I need some advise here on how to set this thing up.

Firstly: I need to provide my employee Internet for check email but not browsing and IM. What are they possible solution to this. Setting? Hardware? What are the best solution?

Secondly: I need to change the current internet setup in the company; Do I need to change normal dLink router to a enterprise router/wifi?

My knowledge of networking limited. thus i need help. Maybe any of you guys here do freelance? Pls PM me ...

We can meet-up for discussion and we may hired u to solve the networking issues in the company.

Alex
soulranger
QUOTE(binks @ Jul 2 2008, 09:55 AM)
Hi guys.

I need some advise here on how to set this thing up.

Firstly: I need to provide my employee Internet for check email but not browsing and IM. What are they possible solution to this. Setting? Hardware? What are the best solution?

You need a firewall device. (Currently my company using Zywall). Setting through firewall rule in security.

Secondly: I need to change the current internet setup in the company; Do I need to change normal dLink router to a enterprise router/wifi?

More detail pls. I'm using a broadband router modem (my modem dial to streamyx) connect to firewall through switches to user/staff

My knowledge of networking limited. thus i need help. Maybe any of you guys here do freelance? Pls PM me ...

We can meet-up for discussion and we may hired u to solve the networking issues in the company.

Alex
*




Just my opinion and i'm not that expert (Ordinary IT Tech only). Currently your condition more alike me.

nod.gif nod.gif
binks
QUOTE(soulranger @ Jul 2 2008, 10:07 AM)
Just my opinion and i'm not that expert (Ordinary IT Tech only). Currently your condition more alike me.

nod.gif  nod.gif
*



hie soulranger,

I'm currently using dLink DIR300 router. and connected to streamyx provided modem.
the problem is this router always hand due to overheated.
thus i'm thining fo upgrading the router to SOHO type ..where they have built-in fan and stuff.

about the firewall device .. you sugguested. I can configure the internet (to limited access;) and set to email checking onli la.
good.
i'll google more minformation ...

kons
QUOTE(binks @ Jul 2 2008, 09:55 AM)
Hi guys.

I need some advise here on how to set this thing up.

Firstly: I need to provide my employee Internet for check email but not browsing and IM. What are they possible solution to this. Setting? Hardware? What are the best solution?

Secondly: I need to change the current internet setup in the company; Do I need to change normal dLink router to a enterprise router/wifi?

My knowledge of networking limited. thus i need help. Maybe any of you guys here do freelance? Pls PM me ...

We can meet-up for discussion and we may hired u to solve the networking issues in the company.

Alex
*


#1. Is the email server hosted specifically on an public IP? Or the employees are using web based email like hotmail/yahoo?
#2. Any modem/router should not overheat in normal environment. You should claim warranty if it hangs often due to overheating.

How many employees do you have anyway?
You should change a router if you have more than 30 concurrent sessions at any time.
If there is more than 1000 concurrent sessions, you need a metro-ethernet grade router.

binks
QUOTE(kons @ Jul 2 2008, 10:47 AM)
#1. Is the email server hosted specifically on an public IP? Or the employees are using web based email like hotmail/yahoo?
#2. Any modem/router should not overheat in normal environment. You should claim warranty if it hangs often due to overheating.

How many employees do you have anyway?
You should change a router if you have more than 30 concurrent sessions at any time.
If there is more than 1000 concurrent sessions, you need a metro-ethernet grade router.
*



our company email is hosted outside the company. we either use webmail based or download them into OE using POP.n
we have lke 20+ user using the internet doing their personla thing rather then working ..... thus the top management has decided to block all non- work related.

thus souranger has advise me to use firewall to block all those unwanted useage. kons. what will your advise? use a firewall device?

can I use those built-in firewall in teh router? like those in linysis WRT54G with Stateful Packet Inspection (SPI) Firewall


pls advise.
kons
QUOTE(binks @ Jul 2 2008, 12:01 PM)
our company email is hosted outside the company. we either use webmail based or download them into OE using POP.n
we have lke 20+ user using the internet doing their personla thing rather then working ..... thus the top management has decided to block all non- work related.

thus souranger has advise me to use firewall to block all those unwanted useage. kons. what will your advise? use a firewall device?

can I use those built-in firewall in teh router? like those in linysis WRT54G with Stateful Packet Inspection (SPI) Firewall
pls advise.
*


If the email server has a set of fixed IP, then the firewall can be set to allow only tcp traffic to these IPs but not anywhere else.
You just need a very simple firewall for this.
I haven't seen the Linksys feature before, but with normal Linux iptables, it is easily done.

Once you have done that, I think the load on the modem/router will be decreased and probably not hanging so often anymore.
Joshua_0718
QUOTE(binks @ Jul 2 2008, 10:19 AM)
hie soulranger,

I'm currently using dLink DIR300 router. and connected to streamyx provided modem.
the problem is this router always hand due to overheated.
thus i'm thining fo upgrading the router to SOHO type ..where they have built-in fan and  stuff.

about the firewall device .. you sugguested. I can configure the internet (to limited access;) and set to email checking onli la.
good.
i'll google more minformation ...
*




QUOTE(binks @ Jul 2 2008, 12:01 PM)
our company email is hosted outside the company. we either use webmail based or download them into OE using POP.n
we have lke 20+ user using the internet doing their personla thing rather then working ..... thus the top management has decided to block all non- work related.

thus souranger has advise me to use firewall to block all those unwanted useage. kons. what will your advise? use a firewall device?

can I use those built-in firewall in teh router? like those in linysis WRT54G with Stateful Packet Inspection (SPI) Firewall
pls advise.
*



You did stated hang and overheated. How do you define hang? As in the Internet connection is still running but you can't enter into the router admin page?
azmihamzah
I could provide service to install free-bsd based firewall (some people called it as linux-based firewall) system for you. It has much more spec and flexibility compared to on-market consumer product.

It using GUI for setup, so you don't need any knowledge about linux command anyway.

Some features that your company might need from this firewall:
- powerfull firewall rules together with time-based config (means you set up the rules and it will take only at specific time, eg: let the employee surf the internet only during lunch time)
- support up to 10000 concurrent connections.
- make whitelist (people or PC that are allowed to use internet all the time)
- got VPN client, powerful QoS, captive portal (to managed visitor client who want to use internet tru wifi)
- can monitor each PC internet usage, together with all site/ big size download made
- completely managed P2P related problem.
- remote management

i'm a freelancer, so my price is wayyy cheaper than market. smile.gif Pm me for more info.
deathclaw
If your existing router has basic firewall functionality, there should not be a problem for you to control your employees access to a specific ip address. You also can limit their access to specific port for downloading pop3 e-mails and block the rest. All this can be done with any basic router with firewall built-in.
binks
QUOTE(Joshua_0718 @ Jul 2 2008, 02:16 PM)
You did stated hang and overheated. How do you define hang? As in the Internet connection is still running but you can't enter into the router admin page?
*



eventually the entire newwork is not assible.
deathclaw
The entire network; are you referring to your internal network or the internet? If your internal network is accessible but not the internet, then most probably the problem is caused by the router or it could be the modem.

Are you able to access the router and modem when the network is not accessible?

Additionally, how did you determine that the router will hang due to overheating?
binks
deathclaw,

Let me explain another time.
I not able to access to the router softmenu, is just hang (loading all the way without showing anything) then upon reset he router, i'm able to log-in fast. Tht is what i'm refering ...


Right now ... i just wanna ask how to block MSN, SKYPE, YAHOO, GTALK and other? anybody knows their port number?
can teach me ... wanna block using the internet restrict from the linksys router ..
kons
QUOTE(binks @ Jul 4 2008, 01:05 PM)
deathclaw,

Let me explain another time.
I not able to access to the router softmenu, is just hang (loading all the way without showing anything) then upon reset he router, i'm able to log-in fast. Tht is what i'm refering ...
Right now ... i just wanna ask how to block MSN, SKYPE, YAHOO, GTALK and other? anybody knows their port number?
can teach me ... wanna block using the internet restrict from the linksys router ..
*


It will be difficult.
You will need to combine proxy + firewall most probably.

Or go for the easier solution, deep packet inspection device, but it will cost an arm.
ravi6662
i agree.. using linux firewall.. a cheap p233 will work.
also u can filter off ALL websites..
and just allow trusted sites..
as for just email.. u better off running exchange
or any client based email.. not webbased. makes u look cheap.

im a network pctech for 25yrs. if u need go to www.ravi6662.com

This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
All Rights Reserved 2003-2006 Vijandren Ramadass
Invision Power Board © 2001-2009 Invision Power Services, Inc.