Re: ZA Conceptual Question

From:
Date: 10/31/02


Date: Thu, 31 Oct 2002 01:35:31 GMT

Taking a moment's reflection, Steve mused:
|
| I set the internet zone firewall to high, which according to what it
| _says_, allows only broadcast/multicast. Allow outgoing ping is _not_
| checked. Why then does program controls prompt me when I ping an address
| on the internet? It seems that the option to check or uncheck "Allow
| outgoing ping" is superfluous. ZA leaves it to program controls in either
| case. So that means there's no way to control outgoing ping except with
| program controls. What am I missing? Thanks.

    Except when that outgoing ping is not associated with any program. If
you run ZA long enough, you will see outgoing traffic that is blocked that
is not associated with any program (according to ZA). The firewall rules
are there for any traffic not specified by Program Controls. Every now and
again, I see outgoing ping and DNS lookups that are not associated with a
program in the logs.