![]() |
| ||
| win Xp Firewall vs. Norton and other... Can somone please explain why I should use a third party firewall instead of the one shipped with win XP. What benefits or security enhancements comes with using Norton or some other firewall, wich you therefore will miss when using the XP firewall? Isn't the XP firewall secure enough? |
| ||
| Re: win Xp Firewall vs. Norton and other... Quote:
The average user with a bit of knowledge will start the firewall and believe they are secure. I tend to believe that no matter what, nothing is actually secure, their are only steps that can be taken to prevent something from happening. for two, it has no idea about connection state, second, it is very limited in that it only allows for port and protocol filtering from the "outside" and not much else. It lends little control to properly secure your environment. It has no ability to track connection state, it has no concept of inside vs. outside, it is used for securing ports (and I use that term lightly), it cannot analyze packets thoroughly (other than the protocol), it has no protection for outbound connections and the list goes on. Do yourself a favor and look into something more robust. You'll be happier in the end. I'd look at IPTABLES in any distro, or look into an appliance like Cisco PIX, etc. www.linuxiso.org http://grc.com/x/ne.dll?rh1dkyd2 Another thing I would like to add to this discussion is that it doesn't report ports as 'stealth' instead it reports ports as 'closed'. Sygate reports all none used ports as 'stealth' for example. If you use a nmap scan on it, whether it be a syn scan or one of the other scans., it reports the host as being 'up'. Why is this bad ? If a port is in the state closed and you send a packet to it it will respond to that packet. For example with a 'res' packet. The packets contain overhead that can give information on the system. Another thing is that you get no information. It does not tell you what is happening. And being unable to block outgoing connections is just plain bad. In my opinion you can better use a (free) third party firewall like sygate, kerio or outpost ect..... Remember to disable the built in firewall if you choose to use a third party one. |
| ||
| Re: win Xp Firewall vs. Norton and other... Quote:
|
| ||
| Re: win Xp Firewall vs. Norton and other... Actually Big "B" some good news ... the newest version of Windows XP's firewall will monitor both inbound and outbound traffic. I'm pretty sure it will be bundled with Windows XP SP2 which has not yet been released. However, Big B is correct, the most recent available version of the Windows XP firewall wants to let Windows talk out to everyone - including Microsoft. This is bad because it doesn't block spyware on your machine from talking out. Other more advanced firewall software allows you to setup rules of exactly what can come in and exactly what can go out. It's extremely more flexible. To be perfectly honest, I'm not a huge fan of Norton Personal Firewall. I have used a few versions in the past and found the thng to be bloated and riddled with bugs and registry errors. I have heard that Tiny Firewall and a few others are really nice. |
| ||
| Re: win Xp Firewall vs. Norton and other... Quote:
|
| ||
| Re: win Xp Firewall vs. Norton and other... *edit above* Through with buggy code shipped default by windows with false sense of security. User error can be fatal. With any OS Windows, OpenBSD ,slackware ect..... |
| ||
| Re: win Xp Firewall vs. Norton and other... Well I guess you're right, i'll better stick to a third party firewall. It's just that I get so frustrated at times with Norton. Like now, 1 hour ago the firewall asked if a certain IP should be allowed to access my PC. Of cource i turned the request down, as always, but after that Internet Explorer cant access Internet, so I instead disabled Norton and enabled the XP firewall. But I think I'll try another firewall instead of figuring out what the **** happened.... Thanks |
| ||
| Re: win Xp Firewall vs. Norton and other... http://www.snapfiles.com/downloadfin...earch&action=s You have to read what your going to block and after all your rules are set its like the firewall is not even there.Untill it sees something different trying to acssess the web.Then it will prompt you to set another rule. Did you scan your ports with the link I gave you? |
| All times are GMT -4. The time now is 1:32 am. |
Forum system based on vBulletin Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
©2003 - 2009 DaniWeb® LLC