Re: Is there a risk with firewalls?




"Sebastian G." <seppi@xxxxxxxxx> wrote in message news:5dsmj4F34kddaU1@xxxxxxxxxxxxxxxx
Mr. Arnold wrote:


The only personal packet filter or personal FW that can get there before the
network connection is available is XP's or Vista's personal packet
filter/personal FW, because those solutions a integrated components of the
O/S. No 3rd party solution is an integrated component of the O/S. So,
therefore, the O/S is not making things wait until the PPF/PFW is up and
running, before anything else takes place.


What about Wipfw with STARTUP_BOOT_START? Works quite well.
Of course, none of the typical PFW *** works with boot startup.

Well Wolfgang in the other post, you heard it here first, let me know if does as advertised.


What you need is a border device like a NAT router. It will always be up and
running, protecting the machine, before the machine can make a connection to
the Internet.


Unless it gets circumvented, which is more or less trivial.

Now, what about not offering any services at boot time? Or better generally?

If one has got to offer the service, then one got to offer the service, like HTTP and FTP, etc, etc.

.


Quantcast