Re: Norton internet sec pro

From: !:?) (_at_*.com)
Date: 07/29/04


Date: Thu, 29 Jul 2004 19:10:09 GMT

Hi,

fabio wrote:

> On Duty,
>
> I would like to set some fw rules on the norton internet sec pro :
> i did set in this way "block" "from" "tcp and udp" "show notification"
 From IP or Web Address ?
Which ports ? ALL ????

> i moved this new rule at the top
>
> so i restarted the pc and then launch the fw;
> the rule i insterted was always on the top.
> i could not do anything and i had to remove the rule.
>
> what did i set wrongly ?

You told it to Block All TCP and UDP.
If it is defined further to ANY Port and ANY Address then you wouldn't
be able to do anything.

> thanks
>
> rgds,fabio

I'm not sure if your NIS Pro is the same as my NIS 1.0 but it is based
on ATGuard as is mine.

I would suggest a Block All Rule at the end of the Rules List.
NIS is ATGuard and that last Blocking Rule was a must in AtGuard.
If you read in you Help files you'll see it does not come right out and
tell directly to use one but it does suggest it in so many words.

This has to do with Auto-Rule Making and some UDP's getting through the
FW without being Logged.

NIS doesn't block all UDP's in the "Unused port blocking" or "Implicit
block rule"
And what's more it will not show up in the Log unless you make a Rule to
Log it.

Make a Ignore Rule to Log all UDP at the end of your list to see what
gets by.

Kevin



Relevant Pages

  • Re: How to Stealth POP3 Port 110 using NIS2000?
    ... explanation for why my POP3 port never seemed to get probed yet showed ... I have NIS 2000 1.0 and I use LiveUpdate to renew it with internet ... I'll probably take your advice and avoid installing a second firewall. ...
    (comp.security.firewalls)
  • Re: How to Stealth POP3 Port 110 using NIS2000?
    ... | According to the firewall log, that port is not even being probed. ... coming from your ISP's routers, ... Check out the NIS rules for POP3 and SMTP for your e-mail client software. ... "Unused Port Blocking". ...
    (comp.security.firewalls)
  • Re: Peronal Firewall Review
    ... > PRO: Easy to use, ... > CON: If you allow an app to go through, you have to go to it and modify it ... Cookie control doesn't stop 3rd party cookie. ... Not easy to configure port access or easy to use. ...
    (comp.security.firewalls)
  • Firewire intermittent loss of connection to Camera on XP Pro SP2
    ... transfer using a Fuji FinePix S2 Pro via there remote capture software called ... systems with W2K SP4 and XP Pro SP2. ... Recently on these systems running XP Pro SP2 we have intermittent ... I have since eliminated that port from the Firewall ...
    (microsoft.public.windowsxp.accessibility)
  • Re: NIS slowing machine to a crawl?
    ... The problem is NIS. ... Check your computer with a port scanner like grc.com in the internet. ... netstat and if its implementation is bug-free enough to report it ...
    (comp.security.misc)