Re: XP SP2 Firewall or ZA Free?

From: · (sdglockman_at_hotmail.com)
Date: 06/24/04


Date: Thu, 24 Jun 2004 00:36:00 GMT


*Vanguard* wrote:

> · said in news:dpjCc.246327$hY.236491@twister.nyroc.rr.com:
>>
>> The Windows Firewall debuting with SP-2 does not include outbound
>> blocking. What you are seeing in that article is the ability to
>> control which applications are allowed to receive unsolicited inbound
>> connections.
>
> You sure? In AV products that I've seen, an application rules list
> means you are defining what port and protocol an application can use
> to punch *out* from your network. Articles like
> http://www.eweek.com/article2/0,1759,1416130,00.asp which state:
>
> If SP2's Windows Firewall is not monitoring (and blocking
> non-excepted) outbound traffic then I don't see the purpose of having
> an applications permission list. Why define an outbound exception
> list for some applications when ALL of them can making any outbound
> connection they want? An inbound exception list doesn't make sense
> except for server programs, like a web server.

I'm sure of what I read. The exception lists there are for server
applications, not for programs making outbound connections. Just read
the text in the screen shot of the dialog with the Exceptions tab
selected: "Windows Firewall is blocking incoming network connections,
except for the programs and services selected below." That says it all.

But you're right, SP-2 isn't final yet. Microsoft probably has teams of
lawyers discussing what the chances are they can get away with screwing
over yet another market niche--this time the personal firewall market.

I wish they would implement outbound protection, and your initial post
got my hopes up. I've had it up to my ass with lousy third-party
software firewalls, and I'd welcome the chance to rid myself of hours
spent endlessly fiddling with damnable, problematic Fisher-Price
firewall controls.



Relevant Pages

  • FS: Put A lid On It Home-school Crock-pot Cookbook/Planner, Miserly Moms, Pearables, CLP
    ... NO MORE GROCERY LISTS ... Applications of Grammar 1 A.K. 6.25 ... Studying God's Word A 6.25 ...
    (rec.arts.books.marketplace)
  • Re: Psion 5 mx pro am Sterben?
    ... Ist eben so auf meiner PC, ich ... Shift+Ctrl+E Exits many applications ... Ctrl+System lists all applications running ... access the silkscreen keys by pressing the Ctrl key, ...
    (de.comp.sys.handhelds.psion)
  • Re: Network Firewall/Routing Solution
    ... > for a good solution to route inbound and outbound traffic. ... > firewall combo boxes that linksys sells, and I really don't want to run ... > I will need to deal with inbound web and ftp requests from the ... > non-pasv connections. ...
    (comp.security.firewalls)
  • Re: what should I do when....
    ... You didn't answer my initial question which was, can you show me a firewall that does *secure* a network? ... The fact of the matter is that *most* businesses do not restrict outbound SSL traffic and even less of them decrypt and re-encrypt traffic for the sake of outbound monitoring. ... Not to mention not all of our outbound connections are established over port 443, we can use any port, hell we can even use ICMP or UDP. ... exploited and their computer connected back to me over https. ...
    (Security-Basics)
  • Network Firewall/Routing Solution
    ... for a good solution to route inbound and outbound traffic. ... not working properly at all with multiple network cards. ... I will need to deal with inbound web and ftp requests from the internet ... able to filter the connections that are established to these IPs for things ...
    (comp.security.firewalls)