Re: Linksys WRT54G and Firewall software



On Mon, 26 Mar 2007 11:13:59 +0900, Gerald Vogt wrote:

Leythos wrote:
On Mon, 26 Mar 2007 10:43:20 +0900, Gerald Vogt wrote:
The XP SP2 FW with no exceptions on a computer directly connected to the
internet is protecting the computer better than a NAT router. NAT does
not provide the protection like a properly setup packet filter.

You don't know what you are talking about. A typical SOHO NAT router, like
the Linksys BEFSR41, provides more protection for a single PC than Windows
XP firewall does.

For most users that have more than one computer, rather than using fixed
or dynamic public IP's for each computer/node, even a typical SOHO NAT
router provides more protection than Windows XP SP2 firewall.

Only a fool would believe that the Windows firewall provides more/better
protection for a single PC than a typeical NAT router.

Sorry, but if you cannot explain why that would be so how should any
fool understand your point?

What is the "more" in protection a WRT54G (which we are talking about
here, don't we) with standard firmware (not a third party firmware)
provides over a single or multiple windows PCs with a XP SP2 firewall
set with no exceptions allowed and connected directly to the internet?

You just say NAT is better the SP2 FW but you never explain why. You
give no arguments why that would be so. I have tried to explain the
reasons for my statement (which you have not cited).

And whenever I see someone whose only "arguments" are like "it is
obvious" or "only a fool" I get very suspicious...

Thus would you please explain?

I did give reasons, you just ignore them.

1) Holes in the XP Firewall that may or may not be present.

2) Holes in the firewall (XP SP2) put there by accident, by applications,
by users that don't understand.

3) File and printer sharing enabled on a public connection....

The typical SOHO NAT router, by default, does not suffer any of those
problems.

Are you really that ignorant of the modern NAT Routers that vendors
mistakenly call Firewalls?


--
Leythos
spam999free@xxxxxxxxxx (remove 999 for proper email address)
.