Print

Why you should run a firewall

Sign in
Sign in to post messages.
Latest post 10/03/2003 02:28 PM by ChrisRLG. 16 replies.
 
Page 1 of 2  
Joined on 07/11/2002
Posts: 2,276
Points 1,070

Why you should run a firewall

Are you running a firewall on your machine? You should be! Without any firewall protection, you are at a much higher risk of being attacked/cracked through the internet. Example: Windows, by default, allows connections on port 135/139. If I know your IP address I can easily get a list of users on your machine through that connection. If any of them are using weak passwords, it will take less than a few hours to crack, and then I will have full access as that user. The blaster worm and the welchia worm connected through ports 135 and 139 as well. When you run a firewall, it hides your computer online such that it only shows itself when you initiate a connection. If you aren't running any servers, this is what you want, as hackers can't see or access your computer.

You can test to see what ports that are open or showing at one of these sites:

Symantec Security: http://security.symantec.com
Gibson Research: http://www.grc.com (follow the links to Shield's-Up!)
DSL Reports Port Scanner: http://www.dslreports.com/scan

 

At the very least, enable the internet connection firewall (ICF) that is built into Windows XP- it doesn't protect programs from getting out, but it keeps bad stuff from getting in. The ICF would have protected you from Blaster and Welchia.

A nice overview of the ICF is here:

http://support.microsoft.com/default.aspx?scid=kb;EN-US;320855

This article will tell you how to turn it on and off.

http://support.microsoft.com/default.aspx?scid=kb;EN-US;283673

If you are behind a router, you are safer, as the NAT feature of the router will discard all unsolicited traffic that arrives. However, it does not completely protect you, as trojans and other things can still get out. Some routers, like the TM2300, include a built in firewall. I have a belkin router that has a pretty capable firewall. Check with the maker of your router to see if it has a firewall.

For those who want something more secure than ICF I recommend one of the following:

ZoneAlarm: http://www.zonelabs.com/store/content/catalog/products/sku_list_za.jsp?lid=nav_za
Kerio: http://www.kerio.com/kpf_home.html
Sygate: http://www.sygate.com/solutions/centrally_managed_personal_firewall.htm
Norton Personal Firewall: http://www.symantec.com/sabu/nis/npf/

Of those listed, Sygate and Norton tend to be the most powerful. ZoneAlarm tends to be the easiest to use, and they offer a free version!

If you would like a nice list of commonly asked questions about internet security, try this link, complements of the awesome security gurus at The DSL Reports security forum:

http://www.dslreports.com/faq/security

Note: Firewalls aren't the be-all/end-all of security. I urge you to run an antivirus program too. Configure Autoupdates for windows as well. If you keep up to date with patches from microsoft, it's very hard for a hacker to hack you. Here is a nice little article about turning on automatic updates:

http://support.microsoft.com/default.aspx?scid=kb;en-us;283629

Note that it will download them for you, but you still have to actually click install. I've cleaned the blaster worm out of 2 computer who didn't have the patch installed, even though windows had already downloaded for them. If they had only clicked 'install' they would have been fine.

Of course, you can always download updates seperately at: http://windowsupdate.microsoft.com

Lastly, learning about and configuring firewalls for those who have not done it before can be difficult at first. I offer my assistance to those who want it. If you would like to know more about firewalls, what they do, and why you should use one, please ask. Reply to this post with any questions,or you can send me a private message too. Even if I don't reply right away, there are several knowledgable people around who will.

  • Post Points: 0

16 Replies:

Joined on 04/29/2003
Posts: 559
Points 20

Re: Why you should run a firewall

If you have a home network, you may also want to disable file sharing on all computers connected to the network.  If you need file sharing, use the NetBEUI protocol for file and print sharing.  NetBEUI can't pass through the gateway to the internet.

Cliff

  • Post Points: 0
Joined on 12/01/2000
Posts: 656
Points 50

Re: Why you should run a firewall

i'm not one to dissuade anyone from safeguarding their computer to the fullest, and with zone alarm being free, why not get it? but novices should realize not having a firewall isn't the end of the world.

the key word in the original post is "if someone knows ur ip address," ip address is akin to home address for ur computer, when it stays the same, as when u hook up thru a cable modem, it allows those with malicious intent a stationary target. they know how to find u the next time if u log off.

however, if ur connecting thru dial-up, ur ip address changes every time u hook up (what's known as dynamic ip,) so u'll be more difficult to find. having a static ip (where it stays the same each time u hook up,) imo, is the best argument against leaving ur computer on 24/7 if u have cable modem. u'll need a firewall more than someone w/ a dial-up.

what will ultimately safeguard ur computing experience is learning safe habits.
  • Post Points: 0
Joined on 11/12/2003
Posts: 147
Points 150

Re: Why you should run a firewall

Actually cayuga, you're wrong.

While I agree if someone has your IP address, they can "find" your computer, but only if your computer responds to their requests.  If you have a properly configured firewall (ie. one that makes your computer appear as a "Blackhole" in cyberspace), then there's really nothing anyone on the outside can do.

In order for a hacker to make it through a weak point, your computer _HAS_ to respond to some sort of request from the other party - if it does not, then the other machine assumes that that computer does not exist, or is not responding, period.

I don't care if the hacker is looking through my window watching me browse the internet - if my computer doesn't respond to his requests, he can't get in (unless he's there physically - and then he has other worries *muhahahahahaha*).

On another note, I didn't see Tiny Personal Firewall being mentioned as a free firewall alternative.  I don't have the link, but a few seconds of Googling should bring it right up.  It's fast, _tiny_ (under 1MB when running), and extremely powerfull.  I've used it's logging features to bust some hackers on my Bellsouth DSL node.

  • Post Points: 0
Joined on 11/27/2003
Posts: 16
Points 0

Re: Why you should run a firewall

i use kerio to protect my pc acaist hackers ive done security tests on it and theyve all passed
  • Post Points: 0
Joined on 12/23/2003
Posts: 5
Points 0

Re: Why you should run a firewall

 http://security.symantec.com

Followed your link to this site....It was really good info. I ran the check for vulnerability and it showed i was not covered for virus protection. I was wanting to know is there anything i can download free because i have avg and this apparently didn't show as safe.

 

Thanx!

  • Post Points: 0
Joined on 12/20/2003
Posts: 364
Points 0

Re: Why you should run a firewall

AngieEva, that's because it did not detect Norton Anti Virus installed. If the scan found no viruses then AVG is doing its job. Symantec (Norton) is trying to convince you to buy their product.

By the way if you see the word "Free" on the Internet then it is not as there will be some catch to the offer. It may be advertising or some hidden program that could compromise your system.

Read the links below to harden your system's defences.

  • Post Points: 0
Joined on 01/07/2004
Posts: 5
Points 0

Re: Why you should run a firewall

I have a thing called "InterNet Alert". Have you heard of it? First of all, is it a firewall? Or should I just get rid of it and install the Norton firewall? Thanks in advance for anything you can tell me.

                                                                                                                         Lar-Bud

  • Post Points: 0
Joined on 12/20/2003
Posts: 364
Points 0

Re: Why you should run a firewall

Lar-Bud, there are several things that come up when using Google Search for "InterNet Alert"

You can find more information about firewalls here:
http://www.firewallguide.com/

  • Post Points: 0
Joined on 01/07/2004
Posts: 5
Points 0

Re: Why you should run a firewall

YoKenny,

Thanks for the info. I did a search on firewall guide, and it says that InternetAlert is a personnal firewall. I downloaded Norton Personnal Firewall anyway. Just in case. So I have these two along with Norton AntiVirus. Generally speaking what should you normally run?

                                                                                                           Thanks again,

                                                                                                                  Lar-Bud

  • Post Points: 0
Joined on 12/20/2003
Posts: 364
Points 0

Re: Why you should run a firewall

Lar-Bud, it is all personal preference but run only one firewall at a time. Running two can cause system problems as both are competing for the same system resources. This is a the same as running two active anti virus applications.

I use Kerio firewall and AVG anti virus as those are my preference.

  • Post Points: 0
Joined on 01/17/2004
Posts: 84
Points 0

Re: Why you should run a firewall

opps, sorry. will a fire wall protect me from trojan horses?
  • Post Points: 0
Joined on 08/17/2002
Posts: 6,692
Points 100

Re: Why you should run a firewall

NO it will not, it will however protect you from worms.

See the info on my website (Link below) for AV's, Firewalls, and malware.)

  • Post Points: 0
Joined on 02/11/2004
Posts: 5
Points 0

Re: Why you should run a firewall

I have an unknown error running on my computer "Iexplore has an unknown error, click OK to clear".

 

When you click OK it backs you out of system completely and/or locks up the computer.   Several users have told me I probably have a virus but I can't get past this error to try to do anything to fix the problem.  Aside from the fact that I don't know what to do to fix it anyway.  I don't even know if it can be fixed.

Please  help?  Computer has AVG virus protection on it.

  • Post Points: 0
Joined on 12/20/2003
Posts: 364
Points 0

Re: Why you should run a firewall

Canlo, please start your own topic in this area of the forum by using the New Message button to help reduce confusion.

Please read and follow the directions at the top of this forum http://forums.us.dell.com/supportforums/board/message?board.id=si_virus&message.id=572

Message Edited by YoKenny on 02-19-2004 09:20 AM

  • Post Points: 0
 
Page 1 of 2