Re: Firewall not working

From: Steve (news_svaardt_at_hotmail_NOSPAM_.com)
Date: 08/23/05


Date: Wed, 24 Aug 2005 00:40:51 +0900

The real question you need to be asking is, what can everyone else see on my
home PC.

1) If you've simply got your PC plugged into your ISP's modem then... be
very worried

2) Building upon #1, but also with the Microsoft ICS Firewall enabled ...
then be less worried, but.....
    what about outgoing connections.... ?

2a) Given the fact that Microsofts' software firewalls haven't worked in the
past... (check out the TCP/IP
    filtering if you have doubts)... I wonder why a lot of people are so
eager to jump onboard... also check out the
    registry settings under HKLM/Software/Services..... raises questions
(since I've pretty much disabled all of them
    and can still browse web pages, see also www.sysinternals.com)

3). More than one software firewall is bad ....?
     In the past I've run the trial Blackice and Zonealarm together..and
each has captured different 'situations'
     though I've seen others raising questions about these, and its pretty
much come down to the excuse that
     running more than one s/w firewall on your machine is bad since
they.... interfere with each other.

At a bare minimum, I'd suggest you try out a couple of the "free"
alternatives that exist, run some of the free online firewall tests, then if
appropriate disable ICMP and the TCP/UDP ports that you don't need to make
available to the rest of the world.

 Ideally invest in a cheap(ish) router (max. 40 US$) that supports NAT
(Network address Translation) & SPI (Stateful Packet Inspection) and add
this to your PC's "chain of protection" by simply plugging one into the
other.

Anyways, whatever solution you choose, apart from pulling the cable from the
wall will always be a security risk ... attitudes need to change too....

Have fun.

Steve

"David Beder [MSFT]" <dbeder@online.microsoft.com> wrote in message
news:%23DW5Ap7pFHA.272@TK2MSFTNGP15.phx.gbl...
> verify that the Remote Administration feature is not enabled
> The easiest way to check is at a command prompt type:
> netsh firewall show state:
> if you see:
> Remote admin mode = Enable
> then it's enabled.
> This effectively opens TCP 445, which also enables being ping'd.
>
> --
> David
> Microsoft Windows Networking
> This posting is provided "AS IS" with no warranties, and confers no
> rights.
>
>
> "Tom" <Tom@discussions.microsoft.com> wrote in message
> news:27E06CA9-15D9-4E88-BB3C-56310CC7E47D@microsoft.com...
>> I've been using the XP firewall for over a year. I never thought much
>> about
>> it until I tested it this weekend with a ping command to my wired network
>> from my wireless laptop on a neighbors network. To my surprise it came
>> back
>> with a reply instead of timing out. I unchecked all exceptions and
>> advanced
>> boxes that would allow it to connect and it still came back with a
>> response.
>> The only way I can get it to keep from being "seen" is to check the Don't
>> Allow Exceptions box. Has anybody else had this problem. I checked the
>> settings against the laptop which I had just reloaded XP on from scratch,
>> and
>> the firewall works without the Don't Allow Exceptions box checked.
>
>



Relevant Pages

  • Re: Issue with Windows XP Pro Client and RWW/RDP
    ... I checked the firewall and remote desktop is enabled because it's ... /connectcomputer usually enables remote desktop, ... GPOs from the SBS for the Windows Firewall? ... office I can get on it and browse the network so it's not a connection ...
    (microsoft.public.windows.server.sbs)
  • Re: Cant access network from wireless laptop
    ... I had no firewall enabled and still was not able to see other network ... "Malke" wrote: ... > Service Pack 2 automatically enables the Windows Firewall. ...
    (microsoft.public.windowsxp.network_web)
  • Re: Samba works only with 192.168.0 network ?
    ... You pretty much _have_ to change your network ... RFC1918 reserves three ranges (192.168/16, 172.16/12, and ... > sounds like a firewall name and there is no problem with the ping. ... for anything that looks like it enables the firewall. ...
    (comp.unix.bsd.freebsd.misc)
  • Re: firewall
    ... There is one group policy that enables the firewall across all interfaces. ... I found that this is a combination of what network interfaces are enabled and which are connected to networks. ... As you can assign networks to the three profiles, the "unsecurest" network connected to the machine gives the firewall profile. ...
    (microsoft.public.windows.group_policy)
  • RE: can ping but not browse
    ... I have stopped the firewall. ... # are safed from all (security) hazards. ... firewall/bastion host to the internet ... # internet and to an internal network, ...
    (Fedora)

Quantcast