Average Ratings 2 Ratings
Average Ratings 0 Ratings
Description
CacheGuard-OS is an open-source Linux-based UTM gateway appliance OS that has been in active development since 2002. It is designed to run on commodity x86 hardware and act as the default route between an internal network and the internet, replacing the ISP-provided router as the traffic checkpoint.
The stack integrates: Squid (web cache and proxy), ClamAV (web antivirus), ModSecurity (WAF), StrongSwan (IPsec/IKEv2 VPN), IPRoute2 (QoS and WAN load balancing), NetFilter (stateful firewall), SSL inspection, and URL filtering. All components are configured through a web-based admin interface rather than directly, making the platform accessible to operators without deep Linux expertise while remaining auditable by those who want to inspect the underlying configuration.
The OS has been open-source since its first release — source ships on every installed appliance. It was recently published publicly on GitHub to make the codebase easier to browse and audit.
Target deployments are small to medium networks — SMBs, schools, and branch offices — where a commercial UTM appliance is overkill on budget but the threat surface is the same. Runs on bare metal or common hypervisors (VMware, VirtualBox, KVM, Hyper-V). No vendor lock-in, no subscription, no licence cost.
GitHub: cacheguard/CacheGuard-OS
Description
Cato empowers its clients to progressively modernize their wide-area networks (WAN) for a more digital-centric business environment. The Cato SASE Cloud serves as a global, integrated, cloud-native solution that ensures secure and efficient connections across all branches, data centers, personnel, and cloud services. This innovative system can be implemented gradually to either replace or enhance existing legacy network infrastructures and disparate security solutions. The concept of Secure Access Service Edge (SASE), which was introduced by Gartner, represents a novel category in enterprise networking. It merges SD-WAN with various network security solutions such as Firewall as a Service (FWaaS), Cloud Access Security Broker (CASB), Secure Web Gateway (SWG), and Zero Trust Network Access (ZTNA) into a cohesive, cloud-based service offering. Historically, network access was handled through isolated point solutions, leading to a fragmented approach that increased complexity and expenses, ultimately hindering IT responsiveness. By adopting SASE, businesses can significantly accelerate the development of new offerings, expedite their market entry, and swiftly adapt to evolving market dynamics and competitive pressures. This transformative approach not only enhances operational efficiency but also positions enterprises to thrive in an ever-changing digital landscape.
API Access
Has API
Yes
API Access
Has API
No
Integrations
Axonius
No
Azure Marketplace
No
Blink
No
Covver
No
Daylight
No
Fuze
No
Indent
No
Proxmox VE
Yes
Tarsal
No
VMware ESXi
Yes
Integrations
Axonius
Yes
Azure Marketplace
Yes
Blink
Yes
Covver
Yes
Daylight
Yes
Fuze
Yes
Indent
Yes
Proxmox VE
No
Tarsal
Yes
VMware ESXi
No
Pricing Details
$0
Free for any number of users. Optional paid support available.
Free Trial
No
Free Version
Yes
Pricing Details
No price information available.
Free Trial
Yes
Free Version
No
Deployment
Web-Based
Yes
On-Premises
Yes
iPhone App
Yes
iPad App
Yes
Android App
Yes
Windows
Yes
Mac
Yes
Linux
Yes
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
No
Live Rep (24/7)
Yes
Online Support
No
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
Yes
In Person
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
Yes
In Person
Yes
Vendor Details
Company Name
CacheGuard Technologies
Founded
2025
Country
France
Website
www.cacheguard.com
Vendor Details
Company Name
Cato Networks
Founded
2015
Country
Israel
Website
www.catonetworks.com
Product Features
Network Security
Access Control
Yes
Analytics / Reporting
No
Compliance Reporting
No
Firewalls
Yes
Internet Usage Monitoring
No
Intrusion Detection System
No
Threat Response
No
VPN
Yes
Vulnerability Scanning
No
Web Application Firewalls (WAF)
Access Control / Permissions
Yes
Alerts / Notifications
No
Automate and Orchestrate Security
No
Automated Attack Detection
No
DDoS Protection
No
Dashboard
Yes
IP Reputation Checking
Yes
Managed Rules
Yes
OWASP Protection
Yes
Reporting / Analytics
Yes
Secure App Delivery
No
Server Cloaking
Yes
Virtual Patching
Yes
Zero-Day Attack Prevention
No
Product Features
Cloud Security
Antivirus
Yes
Application Security
No
Behavioral Analytics
No
Encryption
No
Endpoint Management
No
Incident Management
No
Intrusion Detection System
Yes
Threat Intelligence
No
Two-Factor Authentication
No
Vulnerability Management
No
Endpoint Protection
Activity Log
No
Antivirus
No
Application Security
No
Behavioral Analytics
No
Device Management
No
Encryption
No
Signature Matching
No
Web Threat Management
No
Whitelisting / Blacklisting
No
IT Management
Capacity Monitoring
No
Compliance Management
No
Event Logs
No
Hardware Inventory
No
IT Budgeting
No
License Management
No
Patch Management
No
Remote Access
Yes
Scheduling
No
Software Inventory
No
User Activity Monitoring
Yes
Network Security
Access Control
No
Analytics / Reporting
No
Compliance Reporting
No
Firewalls
No
Internet Usage Monitoring
No
Intrusion Detection System
No
Threat Response
No
VPN
No
Vulnerability Scanning
No
SD-WAN
Application Delivery Control
No
Centralized Orchestration
No
Dynamic Path Selection
No
Multi-Cloud Management
No
Policy-based Management
No
VPN
No
WAN Optimization
No
Zero-Touch Provisioning
No