Vulnerability Development mailing list archives

ZoneAlarm weirdness


From: Rob Perry <ke6jqh () ARRL NET>
Date: Tue, 8 Aug 2000 04:09:34 -0500

For various and mulitple reasons, I am running ZoneAlarm 2.1.25 on a Windows
2000Pro system. Ever since it's installation several days ago I noticed that
ZoneAlarm was blocking the response to it's own registration and update
checks. I sent an email to ZoneLabs detailing the issue and the response
they sent back to me told me to add the remote IP address to my trusted
local zone. My own knowledge of such areas still being somewhat limited
(hence the reason I follow this list in the first place) it seems as though
doing so would open my system, as well as anyone else they've given this
advice, to anybody smart enough to spoof their IP address. Am I in error or
is this something ZoneLabs should investigate a little more carefully? At
the bottom I have included a copy of ZoneLabs response to my query.

Sincerely,
Rob Perry

-----------------------------------
Hi,

Thank you for using ZoneAlarm.

Some applications use remote servers or special services that require more
open access to  your computer.  This requires that you add the remote
computer's IP Address to your trusted Local Zone.

Please do the following to add a trusted "Host/Site, IP Address, IP Range,
or Subnet" to your Local Zone.

1. Click on the "Security" button to view the Security panel.

2. Click on "Advanced".

3. Click on "Add" and select "Host/Site".

4. Under "Description", enter a name for the "Host/Site".

5. Enter the name of the "Host/Site".  For example, "www.addhostsite.com"
(no quotes).

6.Click "Next".

7.Click "Finish".

8.Click "OK".

As long as you leave the Security Level (for the Local Zone) set to medium
or low access to the "Host/Site" should be available.

Best regards,
Zone Labs Support


Current thread: