![]() |
|
|||
|
I decided to play around with my Comodo Firewall a bit; I just blocked ALL my ports and am adding exceptions to that rule - a little for security, but a little for fun and learning too. So far I'm allowing DESTINATION ports: 20/21, 53, 80, 443, 563, 1194 (openvpn), 8080 and 35592 (utorrent)
Source ports for these allowed destination ports are all open for my OS's choice.perhaps I should use 22 instead of 20/21. Last edited by syncmaster913n : March 29th, 2012 at 08:41 PM. |
|
|||
|
Quote:
im copying your security but im under windows 7 x64 defensewall is not supported any alternatives? |
|
||||
|
Quote:
__________________
✓The first principle is that you must not fool yourself, and you are the easiest person to fool. ✓Science is the belief in the ignorance of experts. ✓I don't know anything, but I do know that everything is interesting if you go into it deeply enough. -------Richard P. Feynman--------- |
|
|||
|
|
|
||||
|
Quote:
DefenseWall and AppGuard provide simular protection (with DW having a much wider protection scope). You can achieve deny execute with default windows capacilities (and remove AppGuard for better performance and any incompatibility risk between those 2 hips). Selective Drive by landing directory protection For any browser take away the execute rights through ACL of your default Download directory, see http://www.wilderssecurity.com/showthread.php?t=278011 You can do the same for the directory where you have your e-mail stored. Optional drive by protection in user space Behaviour: IE does not allow to download exectables, FF downloads a null file, Chrome/Iron does allow to download but Explorer blocks execution. With the REG file (Block ON and Block OFF), you simply switch modes with IE/FF. Chrome and Iron have the most user friendly implementation (plus advantage of Chrome's excellent sandbox), simply right click and remove block. See http://www.wilderssecurity.com/showp...37&postcount=1 When on XP you need to install Fajo XP FSE http://www.fajo.de/main/ to see the security tab. On Vista/Win7 it is also available on Home versions Last edited by Kees1958 : March 30th, 2012 at 07:06 AM. |
|
||||
|
Quote:
__________________
✓The first principle is that you must not fool yourself, and you are the easiest person to fool. ✓Science is the belief in the ignorance of experts. ✓I don't know anything, but I do know that everything is interesting if you go into it deeply enough. -------Richard P. Feynman--------- |
|
||||
|
Quote:
I will remember you said that ![]()
__________________
OS Hardening + Applocker + ExploitShield + EMET + HitmanPro |
|
||||
|
Added, Removed
Microsoft Security Essentials 4.0.1512 Beta Comodo Firewall & Defense 5.10 Kingsoft PC Doctor 3.3.0.67 HitmanPro 3.6 Build 148 Active@ Disk Image 5.25
__________________
OS Hardening + Applocker + ExploitShield + EMET + HitmanPro |
|
||||
|
Quote:
![]()
__________________
7 x64 Pro + WSA + Mbam Free + HMP + Shadowdefender + Macrium free |
|
|||||
|
Quote:
Thanks, I like to have a layered defense w/o the hassle of daily updating. Quote:
As far as a Policy Based HIPS goes there currently is only DefenseWall and GeSwall, neither which is 64-bit at the moment. Perhaps a 64-bit Classical HIPS would work for you. Quote:
Quote:
Not a bad choice, SpyShelter Firewall is pretty strong but falls short on some personal testing done by myself, (Xp Home SP3 32-bit) your mileage may vary. Quote:
Thanks for the tips Kees, but I'm having no performance issues or any incompatibility issues running DW and AG together. Perhaps your suggestion will be of use to other members here. ![]()
__________________
May you fly straight to heaven - but if you go to Hades - may Lethe run with Guinness |
|
||||
|
i am very happy with Online Armor Premium
and i bet if i add AppGuard for sure it will be more security added to my system like double layer
__________________
Emsisoft Anti-Malware 7.0/WebRo0t AntiVirus 2o13 |
|
||||
|
Added:
Virtual Machine running Debian LXDE for web browsing and mail. Everything is isolated and behind a virtual NAT. The only thing shared is the clipboard (one-way to the guest). Nothing leaves the VM.
__________________
E-Mail: og8oh@notsharingmy.info |
|
|||
|
DefenseWall Personal Firewall 3.18 beta
Malwarebytes Anti-Malware (on demand) Blue Coat K9 Web Protection |
|
|||
|
Quote:
What about COMODO Defense+ ? |
|
||||
|
Quote:
What about it? Comodo Defense+ is more of a classical HIPS, is it not?
__________________
May you fly straight to heaven - but if you go to Hades - may Lethe run with Guinness |
|
||||
|
Quote:
Bufferzone has the option to sandbox all new executables on your harddisk + other drives (contain all, contain signed, contain none). I believe the sandbox of C+ (indeed a classical HIPS) can be configured to sandbox all new unsigned programs, so that is some sort of (policy) containment. But I agree that GeSWall and DefenseWall resemble the definitions of policy based HIPS more closely. AppGuard also qualifies as a policy based HIPS with the HIPS being limited to file, registry, memory protection and execution protection (although quiet effective with this first stage attack vector focus) |
|
||||
|
Quote:
Defense+ is a classical HIPS if you disable the sandbox and set it in Paranoid Mode.
__________________
We are such stuff As dreams are made on. |
|
|||
|
Quote:
In blue the changes. Don't want to offend Kees1958, but SAFE-LUA was my signature ![]() |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|