Re: Linksys router as Firewall

From: Leythos (void_at_nowhere.com)
Date: 07/19/03


Date: Sat, 19 Jul 2003 17:01:27 GMT

In article <vqqihvgcp9ndudq1s3nkglu1e0570t2ops@4ax.com>,
badnews@hansenonline.net says...
> On Sat, 19 Jul 2003 14:48:05 GMT, Leythos spoketh
[snip]
> >None of the Linksys line provide filtering of the INBOUND connections
> >that are FORWARDED - there is nothing inspected in the forwarded ports.
> >So, while it does isolate the external from the uninvited internal, it
> >has no means to inspect the packets for content (as most firewalls do).
>
> Only application based proxies provides data inspection. This is only
> available on some firewalls, and only for specific protocols (http, ftp,
> smtp)

I've used the WatchGuard for so long that I've grown to expect this
feature. I never expected it to be in the home class firewalls.

[snip]
> >> >(d) filtering outgoing traffic for security and network usage rules
> >> >(filtering or monitoring service);
> >>
> >> The Linksys router does that.
> >
> >It does not. You can filter outbound based only on MAC, IP, and PORT.
> >There is nothing to in any of those methods that allow the Linksys to
> >check the content of those packets.
>
> Again, only application based proxies provides data inspection, and this
> is only available on some firewalls, and only for certain protocols. The
> Linksys' rules are extremely simplistic (as I mentioned at the bottom of
> my post, but they do exist).

I agree with you about the level of inspection on the linksys. I've
loved them for all sorts of applications.

We're on the same page here.

I just wish that ISP's would inform users (or include it as part of a
start-up cost) about routers and NAT. It would cut down on the number of
compromised machines by quite a bit.

[snip]
> >> >(e) filtering incoming traffic for rogue data (viruses, spam,
> >> >inappropriate data (filtering), or improper actions (port scanning,
> >> >overload prevention, etc.;
> >>
> >> Virus scanning and spam filtering is not a function of a firewall.
> >
> >All Firewall products (real ones) allow you to block attachments,
> >headers, etc.... None of the Linksys do this. I don't think the (e) was
> >suppose to mean that it scans the data, more that it allows admins to
> >block file types and such.
> >
>
> Really? Neither the Pix nor Symantec Enterprise firewall supposed
> removal of attachments in e-mail. I don't think the Sonicwalls does this
> either. I can't speak for other "real firewalls"

I've not used a Sonic or Pix in about a year, but the WatchGuard
Firewalls have been able to do this for about 4 years. If you setup a
SMTP filter it can be configured to block all sorts of inbound
attachments, not just mime types. The good part of the email still gets
through.

Ever since I got my first FW1 and Sonic and Netscreen I've wanted to go
back to WatchGuard. Even the SOHO lines offer more than the home user
NAT appliances (but they cost a lot more than a $79 Linksys).

I still think it would be great if ISP's were forced to provide a NAT
router to every customer.

-- 
--
spamfree999@rrohio.com
(Remove 999 to reply to me)


Relevant Pages

  • Re: Best way to securely connect 2 offices in the same building for file sharing.
    ... They want to share large files at high speed so Internet is ... CAT6 cable between firewalls instead of an Internet connection. ... Bad move - Linksys doesn't make quality firewalls and most of the ... Linksys units is just an IP, not a second network. ...
    (comp.security.firewalls)
  • Re: Best way to securely connect 2 offices in the same building for file sharing.
    ... They want to share large files at high speed so Internet is ... CAT6 cable between firewalls instead of an Internet connection. ... Linksys units is just an IP, not a second network. ...
    (comp.security.firewalls)
  • Re: How good are personal hardware NAT firewalls?
    ... > personal firewalls like the LinkSys BEFSX41 are: ... no inbound ports are open (i.e. ... > I wanted to get some details on the final item (does packet filtering ... about what other firewalls on the internet that hacker may have been ...
    (microsoft.public.security)
  • Re: Security Breached - New SBS Installation
    ... You're arguing Application level firewalls vs Network level firewalls. ... a linksys cannot do application level filtering. ... NAT Routers can't ...
    (microsoft.public.windows.server.sbs)
  • Re: Linksys ports ranges filtering question.
    ... But is there some major ports or critical port's ... > ranges that i have to filter in these five line port's range. ... can someone tell me a good configuration of a LinkSys ... Is this the Linksys Firewall Router? ...
    (comp.security.firewalls)