a software-on-box firewall is no god.

Go to the local dump and find you´re self a 386´er or something like that. Go out and by two netcard adapters, and kick a linux dist into it, read the IPCHAINS-Howto and then you are rolling the dance floor with a firewall that rocks.

I know somebody belives that hardware firewalls are much more secure, and there is different views of that, however my view of the case is that a "real" box has much more processor power and can do much more in less time, but enough of that. This is´nt supposed to start a flamewar about hardware vs. software firewalls!