open source: securing your network · 2019-01-09 · opnsense is an open source, easy-to-use and...

10
Open Source: Securing Your Network Randy Caldejon, CounterFlow AI & Jos Schellevis, Deciso B.V.

Upload: others

Post on 26-May-2020

3 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Open Source: Securing Your Network · 2019-01-09 · OPNsense is an open source, easy-to-use and easy-to-build security platform with a strong focus on security and code quality

Open Source: Securing Your Network

Randy Caldejon, CounterFlow AI & Jos Schellevis, Deciso B.V.

Page 2: Open Source: Securing Your Network · 2019-01-09 · OPNsense is an open source, easy-to-use and easy-to-build security platform with a strong focus on security and code quality

Open Source: Securing Your Network

QUESTIONS ?!?

Page 3: Open Source: Securing Your Network · 2019-01-09 · OPNsense is an open source, easy-to-use and easy-to-build security platform with a strong focus on security and code quality

Open Source: Securing Your Network

• About Deciso• About CouterFlow AI• OPNsense• OPNids

Page 4: Open Source: Securing Your Network · 2019-01-09 · OPNsense is an open source, easy-to-use and easy-to-build security platform with a strong focus on security and code quality

About DecisoWe are a globally operating manufacturer of networking equipment.

We designs and produce complete products for integrators, OEMs and resellers.

We believe in the power of open source and actively contribute to the open source community.

We where foundedin 2000 and are located in Middelharnis, the Netherlands.

Page 5: Open Source: Securing Your Network · 2019-01-09 · OPNsense is an open source, easy-to-use and easy-to-build security platform with a strong focus on security and code quality

Streaming AnalyticsPacket Capture Data Visualization

Full packet capture with streaming ML analytics and visualization

@ 2018 Counterflow AI all rights reserved. Counterflow AI Confidential

Page 6: Open Source: Securing Your Network · 2019-01-09 · OPNsense is an open source, easy-to-use and easy-to-build security platform with a strong focus on security and code quality

OPNsenseis an open source, easy-to-use and easy-to-build security platform with a strong focus on security and code quality.

HistoryForked from pfSense and m0n0wall in 2014First official release in January 2015

Mission statementOur mission is to make OPNsense the most widely used open source security platform. We give users, developers and business a friendly, stable and transparent environment.

The project's name is derived from open and sense and stands for: "Open source makes sense."

OPNsense - introduction

Page 7: Open Source: Securing Your Network · 2019-01-09 · OPNsense is an open source, easy-to-use and easy-to-build security platform with a strong focus on security and code quality

OPNsenseUsersFeature complete in comparison with

commercial solutions.

Easy to use User Interface for all available

features.

Suricata in inline mode at the heart of the system

Markets• SME Businesses• Datacenters & Enterprises10Gbps inline IPS with Accolade cards on

commodity hardware

• School Networks

DevelopersProvide a secure and manageable

platform for any security application.

• OPNids (CounterFlow AI / Deciso ),

• Sensei (Sunny Valley Networks)

Page 8: Open Source: Securing Your Network · 2019-01-09 · OPNsense is an open source, easy-to-use and easy-to-build security platform with a strong focus on security and code quality

OPNsense - screenshots

Page 9: Open Source: Securing Your Network · 2019-01-09 · OPNsense is an open source, easy-to-use and easy-to-build security platform with a strong focus on security and code quality

• 134 releases / 8 major, up till version 18.7.7• 30 active contributors, > 100 authors in total• Average of ~100 commits per author• Fast growing install base of ~28000 active installs (Nov 2018)

OPNsense Statistics

Page 10: Open Source: Securing Your Network · 2019-01-09 · OPNsense is an open source, easy-to-use and easy-to-build security platform with a strong focus on security and code quality

OPNsense – Telemetry Sharing

As founder of OPNsense we believe that sharing knowledge creates better products: the core tenet of open source and the primary driver for our success over the past 18 years.

Sharing is the foundation of open source, sharing sources, sharing knowledge..

today we’ll add sharing telemetry to OPNsense in collaboration with Proofpoint to enable any user to effectively protect their network by combining the power of Suricata and the ET Pro ruleset