Looking for everyone's perspective on antivirus software on windows server based systems. I run a windows SBS 2011 Essentials machine that requires domain credentials to access it. I'm still paranoid about a virus getting into the system though so want peoples opinions. I'm looking for free stuff and the only one I've really found is ClamAV.
We currently have a sonicwall hardware firewall that I think works pretty well but it's a nightmare to setup any type of port forwarding on it. I have several DD-WRT flashed wireless routers (acting purely as access points to distribute a wifi signal that doesn't seem to work well with AC but oh well...). Is it necessary to have a hardware firewall or should I work to transition over to using one of the DD-WRT enabled devices as my firewall or is that a security risk? I can manage the DD-WRT better where the likelihood of a hole being opened in my sonicwall by accident because of my poor familiarity makes me think of it more as a security risk than anything else. My concerns with the DD-WRT systems is forward GRE protocols if we enable a VPN server on the SBS. (VPN is a complete nightmare from my experiences at home setting it up).
Thoughts: