Re: Enable firewall to ignore ping requests

From: andy smart (anonymus_at_discussions.microsoft.com)
Date: 11/29/04

  • Next message: andy smart: "Re: default page locking"
    Date: Mon, 29 Nov 2004 09:45:40 +0000
    
    

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    Mr. Kurtz wrote:
    | "Karl Levinson, mvp" <levinson_k@despammed.com> wrote in message
    | news:e%23QGWe70EHA.4072@TK2MSFTNGP10.phx.gbl...
    |
    |>"Jason" <Jason@deadspam.com> wrote in message
    |>news:%23kTmxP60EHA.1152@TK2MSFTNGP14.phx.gbl...
    |>
    |>
    |>>Dont worry about it ping isn't nearly as evil as Steve makes out, he has
    |>>a tendency to use scare tactics.
    |>
    |>Agreed.
    |>
    |>Blocking ping is controversial, because you can still be visible even with
    |>ping blocked. I do block ping on my system, though, I believe.
    |>
    |>How to do this depends on what firewall you're using. Here's how to
    |>configure the Windows XP firewall:
    |>
    |>http://securityadmin.info/faq.asp#icf
    |>
    |>Or, you can install free firewalls like www.kerio.com, www.sygate.com or
    |>www.zonealarm.com These have more functionality than the Windows
    |
    | firewall,
    |
    |>and will give you a lot more information about mystery executables on your
    |>system [I think the XP firewall tells you pretty much nothing about
    |
    | these.].
    |
    |>But they may take more effort to maintain. For example, if you end up
    |>blocking something important, you have to look at the logs and figure out
    |>what needs to be unblocked.
    |>
    |
    |
    | To the OP:
    | Take the extra time to learn how to use Kerio, ZoneAlarm, or Sygate.
    Any of
    | thse is far superior to the XP firewall. You would be well served.
    |
    | With regard to this particular post:
    | References to "blocking something important" smacks of FUD; particularly
    | after agreeing with the assesment of Gibson's "scare tactics".
    |
    |
    | Kurtz
    |
    |
    I'm not sure that reminding users, especially users without much
    experience, that there can easily be unforseen consequences, counts as FUD.

    I'd far rather be warned than make an uniformed descision....
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.2.5 (MingW32)
    Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

    iD8DBQFBqu/Eqmlxlf41jHgRAsCdAJ4mB+yJAhplHK1An/8X0DokwuZlrQCgiYsh
    jncVfgcYSLirxwXZX8uJ7jo=
    =9YcC
    -----END PGP SIGNATURE-----


  • Next message: andy smart: "Re: default page locking"

    Relevant Pages

    • Re: Win 2003
      ... there was an entry in the firewall that should not of been ... ping the outside interface of the router ... There is nothing blocking things on the firewall. ... Server is a member of the domain. ...
      (microsoft.public.windows.server.general)
    • Re: AD, DHCP or maybe DNS problem?
      ... if I use the firewall it doens't work. ... I already setup several RRAS servers and they work fine, ... but can't use the internet on) below are my pings ... Ping statistics for 127.0.0.1: ...
      (microsoft.public.windows.server.active_directory)
    • Re: PRB:socket api "listen" always fails returning WSAEINVAL and p
      ... WinXP pc is not running any firewall as i have switched off firewall and ... to do with the ping situation, but what you're doing there is wrong. ... No subnet mask and MAC address of the ethernet card both are fine as i am ... ip addrees of the WinXP pc:10.123.4.101 ...
      (microsoft.public.windowsce.app.development)
    • Re: XP Network doesnt allow new computer to access
      ... This machine can ping other one. ... no other machines are visible in My Network Places. ... >> The list of servers for this workgroup is not currently available." ... I've mucked around with the firewall - ...
      (microsoft.public.windowsxp.network_web)
    • Re: Can not sync using Ad-hoc
      ... Looks to me from what you have posted that you are running a firewall on the ... Ad-Hoc connection on your PC and that is blocking your connection. ... to be configured with a network name and channel. ... Can you ping the PC by ...
      (microsoft.public.pocketpc.wireless)