What are the logging / monitoring / management capabilities with all these though?
What I'd like to be able to do for example is:
- block a specific device IP from any outbound access by default
- view a live log of what that device IP is trying to do - protocol / port / target IP ..... including any domain and url if it's http / https
- (ideally) from that live log be able to click a button that automagically creates an allow rule e.g. "allow this IP full outbound access", "allow this IP outbound access using this protocol / port", "allow this IP outbound access to this target IP", etc
I'm sure any / all of them can achieve the end result, but it's the simpler management side in getting to that end result that I'm really looking for.
The Unifi USG looked reasonable, but seems there's like zero UI for logging / reporting of what's going through the device.
Too many hours lost in the past in trawling log files by hand, carefully crafting IP tables rules and / dansguardian / blocklists / whitelists / etc.
Am I asking too much?