Re: Kerio PF



Ian Pollard wrote:
Hi
I purchased the pro version of KPF some time ago. At the time, I
was using a standard broadband modem for connecting to my ISP. I
recently upgraded my system to wireless and found that Kerio blocked
most of my Internet connections. I contacted support who gave me much
advice on how to set it up. I followed their advice but got nowhere. I
have now uninstalled Kerio and am relying on my wireless broadband
modem/router and Windows firewall. I was wondering how safe this is and
am looking for advice on where to go next with my PC security. I am
using Windows XP HE with SP2. Any advice appreciated.

Ian

If it were me, then I wouldn't use the XP FW behind the NAT router either. Most likely the NAT router and the XP FW cannot stop outbound traffic. However, there is another packet filter on the XP O/S called IPsec that can stop inbound or outbound traffic behind the NAT router by port, protocol or IP and it's called IPsec. You can use it to supplement the NAT router too.

You can implement the the AnalogX IPsec rules on the machine make the rules,learn how the rules are made and configure the rules yourself.

http://www.petri.co.il/block_ping_traffic_with_ipsec.htm
http://www.analogx.com/contents/articles/ipsec.htm
http://support.microsoft.com/kb/813878


The buck stops at the O/S and nowhere else and you should try to secure it as much as possible on a wireless network, as someone can join your wireless network and be all over the top of your machines wired or wireless.

http://labmice.techtarget.com/articles/winxpsecuritychecklist.htm

Basics

http://netsecurity.about.com/cs/wireless/a/aa112203_2.htm

Duane :)






.



Relevant Pages

  • Re: Kerio PF
    ... was using a standard broadband modem for connecting to my ISP. ... recently upgraded my system to wireless and found that Kerio blocked ... I followed their advice but got nowhere. ... then I wouldn't use the XP FW behind the NAT router either. ...
    (comp.security.firewalls)
  • Re: Please help with WAP54G
    ... >>The main router is a Netgear MR814 with wireless disabled. ... Don't put the WAP54G in the middle of the DHCP range. ... >>Prior to connecting the WAP54G to the network, I gave it the IP address ... > updates would cause the card to refuse to connect. ...
    (alt.internet.wireless)
  • Re: WIRELESS THEFT
    ... > Subject: Re: WIRELESS THEFT ... > music concert. ... > of those signals as Unauthorized Access (nevermind that there may well be ...
    (Security-Basics)
  • Re: Host Computer with ICS cannot be accessed
    ... >>laptop uses a PC card for wireless connection to the router. ... Is the router protection enough from outside intrusion? ... > 2) A NAT router will protect you from unsolicited incoming traffic. ... > The second layer is a software firewall, or a port monitor like Port Explorer ...
    (microsoft.public.windowsxp.network_web)
  • RE: LocalHost ping fails after removing spyware
    ... (connecting via NETGEAR Wireless router to Cable modem, ... "Jason Bennett" wrote: ...
    (microsoft.public.windowsxp.network_web)

Quantcast