this post was submitted on 16 Feb 2024
3 points (100.0% liked)

Selfhosted

61755 readers
366 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

Detailed Rules Post

  1. Be civil.

  2. No spam.

  3. Posts are to be related to self-hosting.

  4. Don't duplicate the full text of your blog or readme if you're providing a link.

  5. Submission headline should match the article title.

  6. No trolling.

  7. Promotion posts require active participation, with an account that is at least 30 days old. F/LOSS without a paywall has exceptions, with requirements. See the rules link for details. Tags [CBH] or [AIP] are required, see the links in Rule 8 for details.

  8. AI-related discussions and AI-involved promotional posts have additional requirements for tagging, as noted in Rule 7 and the AI & Promotional Post Expanded Rules post, and find example disclosures here.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 3 years ago
MODERATORS
 

Has someone experience running these as firewall preferably with package inspection and incoming Wireguard connections?

Sophos XG115 or XG105 seem to be quiet cheap on eBay

top 2 comments
sorted by: hot top controversial new old
[โ€“] ShortN0te@lemmy.ml 4 points 2 years ago

Got a sg125 rev. 2 running OPNsense. Not actively running somewhere atm, but everything worked out of the box as far as i tested. Looks like solid build hardware on the first glance. And probably want to deploy it when i get my FTTH.

[โ€“] FoW@netsphere.one 2 points 2 years ago

@Jerry1098
I have XG105 rev. 3 and using it as ESXi host for networking tests.
The CPU doesn't have power management features that you'd find on a regular PC, so it's only useful as a network device.
Consider that Sophos has a free firewall and VPN, even if your license has expired.
That model was designed as a VPN device for SOHO and homeworkers, so it seems like it would be fine for other VPN installations.