Re: Firewall Suggestions

From: Stupified (neosadist@hotmail.com)
Date: 01/22/03


From: "Stupified" <neosadist@hotmail.com>
Date: Wed, 22 Jan 2003 09:37:47 -0600


"Duane Arnold" <notme@notme.com> wrote in message
news:BWqX9.80858$hl1.10816@sccrnsc04...
> I agree with Stup on everything except for two of them.
>
> 1) The Win98 issue is obvious to me that application works on Win98. I
have
> been there when moving an app to like Win 2k or even to another Win98 or
Win
> 2K to Win 2K and watched the app *crap* with me being on the phone with
the
> vendor completely pissed at the whole situation. The old saying goes, if
> it's not *broke* don't *fix* it.

True, there can be problems migrating to another operating system, but
still, in a business environment, it's my opinion that win98 has no place
there, along with win95 and winme. True, better win98se than the others
lol.

>
> 2) The Linksys router is good for protecting from an attack from the
> Internet. But the router is useless on the LAN side. And once a machine is
> infected with a self populating worm, virus etc. etc., the machines will
> attack each other on the LAN or private side of the router , because of
the
> vary nature of the Win O/S(s) with MS file and Print Sharing, TCP/IP and
> NetBeui, etc., the machines are vulnerable to each other.

True, but that's what common sense and good antivirus are for. True, the
machines are vulnerable to each other, but I think that a hardware firewall
for the entire LAN plus a software firewall is just overkill. You want them
to be less vulnerable to each other, use an operating system that isn't
itself a liability.

>
> That's why I and anyone else who uses BlackIce 3.5 IDS/firewall knows that
> BlackIce will not only back-up the router with its protection from attack
> from the Internet, but will protect the machine from attack from another
> machine on the LAN. BlackIce will protect even if IP(s) have been accepted
> between machines, if the BlackIce IDS sees an attack such as a worm,
virus,
> etc coming in the network traffic between machines, BlackIce's IDS will
> instruct the firewall to block traffic from the other machine.

True, but just about any other software firewall will also "backup" the
router.

>
> To this day, I have a Win 2K laptop at work that is my primary VB
> development machine that I bring home and connect to the router so that I
> can VPN to the job's network on weekends. That machine has got a worm on
it
> that has defeated F-secure and I got F-Secure up and running again and the
> machine up and running to continue my work. I don't have time to have Tech
> Support rebuild it right now. I connect it to my network and watch
BlackIce
> on my other machines start to protect.
>
> Hey, that's it. And the facts are that no other firewall for the Windows
> Desktop can protect like that.
>
> Duane :)
>
> --
> The protection of the machine is a process and is not a given!
>
>



Relevant Pages

  • Re: Routers Firewall
    ... > indicates that it has firewall technology, then the router doesn't have a ... What your router does have is NAT. ... ZA is a fine product which will protect a computer ... Port 80 is the WEB access port and port 21 is the FTP ...
    (comp.security.firewalls)
  • Re: Firewall security: Re: Problems with simple Samba file share
    ... >>million doesn't change my action of deploying a firewall ONCE. ... They keys can be obtained ... > What I suspect is that you think a special attack will be developed ... the firewall helps protect us. ...
    (comp.os.linux.misc)
  • Re: Need Firewall?
    ... I recently purchased a Linksys wireless router to have a wireless ... firewall like Comodo or ZoneAlarm anymore? ... NAT-capable routers do nothing to protect the user from him/herself (or ... it is incumbent upon each and every computer user to learn ...
    (microsoft.public.windowsxp.general)
  • Re: Neither, buy a router.
    ... router for a home network? ... Would I still need a software firewall too? ... broadband-capable Virtual Private Network firewall is a true ... spoofing, land attack, tear drop attack, IP address sweep attack, Win Nuke ...
    (comp.security.firewalls)
  • Re: How well does the Windows Vista Firewall work?
    ... Since you sound like one of the more knowledgeable people can you please tell me if my firewall is already on or if it needs to be activated on my router? ... I have Verizon Fios and the router they gave me is an Actiontec MI424-WR Ver. ... I can't see how those spywares can be legal for a company to do. ... It won't protect you from spyware. ...
    (microsoft.public.windows.vista.general)