Hi!
we moved over the last years from SOPHOS (SG & XG) to Mikrotik - and we’re very happy!
Only the Websurfing options for Clients and Users is not like the “Next Gen” Firewalls.
On Sophos we have lot’s of issues with Online Banking while TLS Encryption is enabled.
But some AV Scanning, Webcontrol, DNS protection or DPI would be nice. → https://www.sophos.com/en-us/products/next-gen-firewall/features
Well known that Mikrotiks are primary Routers, we want do add more “Security” for our Clients and Users.
What are most common tools (or settings) to get some extra security?
Only forward Port 80 and 443 to WAN?
Or redirect to a Appliance/VM which do the Next-Gen stuff? Any recommendations? OpenSource? ![]()
Some tools i’ve googled but not tested is Wazuh or CrowdSec… but perhaps one of you guys had already some experience…
Best Regards!