Re: How effective is a router as a firewall?

From: ClareOldie (ClareOldie_at_nowhere.ie)
Date: 10/29/03


Date: Wed, 29 Oct 2003 17:46:34 -0000


Jodie wrote:
> Okay, just so that we're on the same page. I (of course) backed IPSec
> in registry. I went to the link you gave me and d/l file, unzipped,
> and clicked on the .reg file.
>
> *I then went into Local Security Policy
> *Went to "IP Security Policies on Local Machine"
> *Went to "Analogx Public Server
> *Checked what you checked below
> *Right clicked on Analogx Public Server and assigned.
>
> I looked in IP Security of the LAN and Analogx Public Server was
> being used.
>
> I'm sure I got it all right, just thought I'd echo it back to you,
> perhaps you have some additional thoughts?
>
> I did d/l Spybot S&D (got 5 cows in Tucows) and will check that out.
>
> Thanks for all your help!
>
You seem to have got it in one.
I would advise that if you are not familiar with the ports/protocols you
have allowed that you do some reading. I found that reading the rule sets
for firewalls gave me a great insight into what to allow or not.
The next step for you I think is to drill down through the individual rules
and see EXACTLY what is being allowed. Don't forget you can really fine tune
them.
FYI I use Adaware, SpyBot S&D, AVG AV, Outpost FW, (used Sygate FW for a
long time), Fingin SurfinGuard Pro - all free for personal use.
    I must say that I got a warm feeling having implemented IPSec. If some
malware trips up my firewall it still has to deal with IPSec.
    Good luck with your setup, glad I was able to help.
Seán



Relevant Pages

  • Re: PIX:L VPN Wizard no maigic for me.
    ... IPsec - thanks again - ... What software is on the pix. ... and will this work with the VPN client software? ... am prepared to spend lots of time paying my dues reading on DES and DH ...
    (comp.dcom.sys.cisco)
  • Re: Outstanding issues with ipsec under 5.2.1?
    ... On Sun, 9 May 2004, Jonathan Belson wrote: ... > I remember reading there were some outstanding issues with ipsec under ...
    (freebsd-net)
  • Re: IPSEC Question
    ... stacks of IETF drafts! ... Just reading the introduction that tells about the purpose of IPsec would already be enough. ...
    (comp.security.misc)
  • Re: General Security ?s
    ... Windows 2000 includes full IPSEC functionality and you can create ... excellent firewalls using IPSEC policies. ... Kent W. England, Microsoft MVP for Windows ... Security has been implemented, but ofcourse ...
    (microsoft.public.security)
  • Re: m0n0wall strange vpn ipsec problem
    ... what you describe (hangs over IPSec tunnel for big data ... No, you shouldn't reboot the firewalls after changing the MTU, but did ...
    (comp.security.firewalls)