Security Basics mailing list archives

Re: Personal Firewall Recommendations


From: "Gopinath" <gopinath_r () naturesoft net>
Date: Wed, 20 Aug 2003 09:43:25 +0530

Is it contains SMTP and HTTP proxy!

Gopinath
----- Original Message -----
From: "Halverson, Chris" <chris.halverson () encana com>
To: <security-basics () securityfocus com>
Sent: Tuesday, August 19, 2003 8:50 PM
Subject: RE: Personal Firewall Recommendations


Sygate Personal Firewall is a very good product as well.

Chris

-----Original Message-----
From: Nigel Hedges [mailto:netethix () iprimus com au]
Sent: Monday, August 18, 2003 5:48 PM
To: security-basics () securityfocus com
Subject: Re: Personal Firewall Recommendations


Hi,

The personal firewalls I have used predominantly are ZoneAlarms and Tiny.
Whilst their interfaces are different, they both are good. I use a machine
that I have setup for home and corporate use. I found ZoneAlarms to block
a
few network services before I had chance to decide on their fate (ie.
during
an asset managed/software delivery type login process. Tiny didn't have
the
same issues... and what I liked about Tiny Firewall 5.0 is that it has a
built in Host-based IDS/IPS which I haven't checked out all the functions,
but so far looks like you can detect against access controls to the system
and check against a wide range of vulnerabilities/exploits yada yada
yada...

Tiny's Firewall learning mode offers some pretty intuitive choices, so
your
friend will have to go through an initial period to accept/deny aspects of
his normal interconnectivity behaviour, such as what programs he believes
is
trusted and should run, and allow/deny on inbound internet connectivity
and
outbound internet connectivity. The decisions (as you would expect) are
based on a once off or always mentality.

Last thing, (and a) this doesnt apply to home use and; b) I dont work for
Tiny) I havent' seen their management layer, but their website says it can
scale up to hundreds/thousands of desktop firewalls. I'll be keenly
watching
and evaluating their enterprise management layer, as in a corporate
enterprise this is a must. I hope it allows for remote policy pushing to
groups or individual desktop firewalls, aswell as a central or
hierarchical
alerting/logging facility ...

Nigel H
CISSP, CISA, Security+






----- Original Message -----
From: <security () mafisi com>
To: <security-basics () securityfocus com>
Sent: Tuesday, August 19, 2003 2:56 AM
Subject: Re: Personal Firewall Recommendations


I would recommend Ipcop; It requires a dedicated box but works great for
me. I run it on a P75
http://www.ipcop.org


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I've been installing a new system for a friend, and am wondering what
personal firewalls might be recommended for a home system running
Windows 2000 on a T1 line.  Anyone have a recommendation other than
ZoneAlarm?

Thanks.

- --
Kryptos
kryptos () phreaker net
925.955.8110
AIM: iKryptos
ICQ: 3240272
IRC: Kryptos (irc.icq.com)
MSN: ikryptos () yahoo com
Y!: ikryptos
Hush Secure Messenger:  ikryptos () hush com

- -----BEGIN GEEK CODE BLOCK-----
Version: 3.12
GAT/L/O d-@ s+:+ a@ C+++ !U P L E-- W+++ N++ !o K--- w--- !O M V- PS+
PE Y++ PGP-(+) t- 5- X+ R !tv b++++ DI++++ D--- G++ e++ h++$ r- y---
- ------END GEEK CODE BLOCK------


-----BEGIN PGP SIGNATURE-----
Version: PGPfreeware 6.5.8 for non-commercial use <http://www.pgp.com>

iQA/AwUBPzyvBKi0gyp0Po7mEQLnUgCgqydkezjV/4WV/xgLo5NDWTMmu+cAoIcI
blZaXBzIE4S+K9TN08EeqKjb
=SsR0
-----END PGP SIGNATURE-----



--------------------------------------------------------------------------
-


--------------------------------------------------------------------------
--





--------------------------------------------------------------------------
-

--------------------------------------------------------------------------
--



--------------------------------------------------------------------------
-
--------------------------------------------------------------------------
--

--------------------------------------------------------------------------
-
--------------------------------------------------------------------------
--




---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: