Re: Use XP Firewall with Router & Firewall?

From: Bruce Chambers (bruce_a_chambers_at_h0tmail.com)
Date: 03/09/05


Date: Tue, 08 Mar 2005 20:10:00 -0700

Leythos wrote:
> On Tue, 08 Mar 2005 19:47:57 -0700, Bruce Chambers wrote:
> [snip]
>
>> SP2's Firewall's most important virtues, I think, are it's improved
>>compatibility with internal LANs and its configurability via group
>>policies. Now, there's a simple, cheap tool that system admins can use
>>to protect the LAN workstations from that occasional - but not rare
>>enough - fool who manages to bypass the perimeter firewall and manually
>>install some malware that could then spread throughout the LAN via
>>shared drives.
>
>
> Got news for you, but if you're in a LAN and using the SP2 firewall it's
> already setup to allow access to shares and will not protect your computer
> while it's in a LAN/Domain.
>

        It's not 100% effective, but it's still better than nothing. It
depends upon the specific type of threat, of course. Things like
Blaster, Welchia, and Sasser, that are not spread via network shares,
get stopped.

-- 
Bruce Chambers
Help us help you:
http://dts-l.org/goodpost.htm
http://www.catb.org/~esr/faqs/smart-questions.html
You can have peace. Or you can have freedom. Don't ever count on having 
both at once. - RAH


Relevant Pages

  • Re: PC autodials using dialer123.exe
    ... If it Cannot delete then reboot ... We are on a LAN, ... > was received on a machine that has Internet access and then spread ...
    (microsoft.public.security)
  • Re: PC autodials using dialer123.exe
    ... We are on a LAN, ... was received on a machine that has Internet access and then spread ... ways to get rid of the program. ...
    (microsoft.public.security)
  • Re: Use XP Firewall with Router & Firewall?
    ... >>policies. ... but if you're in a LAN and using the SP2 firewall it's ... Blaster, Welchia, and Sasser, that are not spread via network shares, ...
    (comp.security.firewalls)
  • remote control support
    ... We have 20 people in our company and spread in two seperate locations(same ... LAN). ... What is easiest way to do remote control support and also can be ...
    (microsoft.public.windows.server.general)
  • Re: Global policy for offline computers
    ... Do I understand it correctly then, if a computer is connected to the LAN ... logs on with the same user account the same user and computer ... policies will be applies as when in the corporate LAN? ...
    (microsoft.public.windows.group_policy)