XP Firewalls
Author
Discussion

mcecm

Original Poster:

674 posts

294 months

Thursday 24th October 2002
quotequote all
Just wondering how safe the firewall built into xp actually is.... Would I be wise to rely on it entirely and keep my internet connection on 24/7??

Cheers
Craig

apeebles

267 posts

311 months

Thursday 24th October 2002
quotequote all
Go to Zonelabs.com and download the personal firewall system. Pretty good software and it is free for personal use.

Alistair

neil_cardiff

17,113 posts

291 months

Thursday 24th October 2002
quotequote all
Oh No not this one again...

>> Edited by neil_cardiff on Thursday 24th October 08:20

neil_cardiff

17,113 posts

291 months

Thursday 24th October 2002
quotequote all

neil_cardiff said: Oh No not this one again...



see here: www.pistonheads.com/gassing/topic.asp?t=19153&f=0&h=0&hw=router

mcecm

Original Poster:

674 posts

294 months

Thursday 24th October 2002
quotequote all
Ahh!! Covered at length I see!! Cheers guys.

mcecm

Original Poster:

674 posts

294 months

Monday 28th October 2002
quotequote all
Right lads. New problem I'm using windows ICS which isn't supported by the zonelabs or tiny firewalls..any idea of other free firewalls?? Please!!

FunkyNige

9,783 posts

302 months

Monday 28th October 2002
quotequote all
Roll up! Roll up! Pick a firewall, any firewall...

http://download.com.com/3120-2001-0-1-4.html?qt=firewall&ca=2001

(I use Sygate personal firewall, it seems to work)

fatsteve

1,143 posts

304 months

Tuesday 29th October 2002
quotequote all
Hmm ICS is a pain in the arse. I've just stopped using it due to horrendous amounts of twatty scrpt kiddies trying to peek into my PC.

I've binned the idea and now just use a direct connection plus McAfee virus checking and ZoneAlarm.

My intention is to get a proper all in one hardware router / DSL modem (hopefully with a wireless AP).

At least that will give you proper NAT'ing and a decent first line protection.

Marshy and CarZee are your men on this subject.

Steve

smeagol

1,947 posts

311 months

Tuesday 29th October 2002
quotequote all
I agree that if you're going to go the ICS method a HW firewall built into a router looks the way to go. BTW the Tiny firewall my friend had coped nicely with ICS it was only when XP was installed that the chap had problems, prior to that we had ICS through a Tiny Firewall no probs.

I was looking at the SMC router anybody got any comments: www.smc-europe.com/english/

big_man

1,422 posts

290 months

Tuesday 29th October 2002
quotequote all
Sort of related!

How do use msn messenger on a network? It won't let me log in and a message appears saying something about proxy's.

neil_cardiff

17,113 posts

291 months

Tuesday 29th October 2002
quotequote all

big_man said: Sort of related!

How do use msn messenger on a network? It won't let me log in and a message appears saying something about proxy's.


If your network administrator has disabled the ports (or more likely blocked everything bar port 8080/80) then messenger or indeed any instant chat will not work.

If you need it then ask your nice Network Administrator whether he has opened the port - if he hasn't then why not, and if he says that he has blocked - DON'T bug him to open it! I, as many other admins do, block all this sort of traffic so that we can restrict our bandwith for more important things.

Like browsing for porn and reading PH

If this is at home, then you will need to find out the ports for messenger (I cant remember off the top of my head; UDP 2797 or something like that) and open them for all incoming and outgoing packets.

Of course this then opens up the ports - lessening your security. But then, if you were really worried, you wouldn't ever consider using messenger would you...



>> Edited by neil_cardiff on Tuesday 29th October 11:39

big_man

1,422 posts

290 months

Tuesday 29th October 2002
quotequote all
Its on the university network so it probably will be blocked.

thanks anyway!

hughjayteens

2,029 posts

295 months

Tuesday 29th October 2002
quotequote all
For as all in one DSL router with hardware firewall try the www.solwise.com SAR715 - I use one and it is great - I have asked a couple of gimps at work to try and attack my PC and they got nowhere.

There is a wireless kit too.

The only issue I can think of is when using netmeeting with webcam or file transfer - needs a little tweaking.

It is setup through a browser or telnet and for £120 very good VFM IMHO.

mcecm

Original Poster:

674 posts

294 months

Saturday 7th December 2002
quotequote all
Right, apologies for digging up the past but just a quick question. I finally got a firewall to work (ZA pro) and was looking through the log of blocked attacks. 1 IP address keeps cropping up as scanning my ports (usually 80). Is it worth reporting the user to their ISP? Will it make any difference?

neil_cardiff

17,113 posts

291 months

Saturday 7th December 2002
quotequote all

mcecm said: Right, apologies for digging up the past but just a quick question. I finally got a firewall to work (ZA pro) and was looking through the log of blocked attacks. 1 IP address keeps cropping up as scanning my ports (usually 80). Is it worth reporting the user to their ISP? Will it make any difference?


You may find it is your own friendly ISP who is scanning you. They do this regularly (I know Ntl do) to make sure yuo are still 'alive' ie whether your IP will need releasing.

Only worry if it is a repeated attack in a matter of minutes - generally most scanners move onto somebody else that hasn't got a firewall.

FunkyNige

9,783 posts

302 months

Saturday 7th December 2002
quotequote all
If you put the IP address into here it'll tell you where the scan came from, there may be an option on ZoneAlarm that does this for you, I've never used it so I don't know.

Marshy

2,751 posts

311 months

Saturday 7th December 2002
quotequote all

mcecm said: Right, apologies for digging up the past but just a quick question. I finally got a firewall to work (ZA pro) and was looking through the log of blocked attacks. 1 IP address keeps cropping up as scanning my ports (usually 80). Is it worth reporting the user to their ISP? Will it make any difference?


As well as possibly being your ISP, this may be traffic from one of the popular worms that infect web servers and then go looking for others to infect.

It's currently regarded as background noise on the internet.

ErnestM

11,621 posts

294 months

Saturday 7th December 2002
quotequote all

FunkyNige said: If you put the IP address into here it'll tell you where the scan came from, there may be an option on ZoneAlarm that does this for you, I've never used it so I don't know.


ZoneAlarm Pro (the pay for use one) does.

ErnestM

dennisthemenace

15,605 posts

295 months

Saturday 7th December 2002
quotequote all
Just installed zone alarm on my pc and it fcuked everything up , also got major hassle trying to remove it ballsed up internet connections and just about everything else

>> Edited by dennisthemenace on Saturday 7th December 20:12