Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other firewalls
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #26  
Old February 2nd, 2013, 09:31 AM
0strodamus's Avatar
0strodamus 0strodamus is offline
Frequent Poster
 
Join Date: Aug 2009
Location: US
Posts: 670
Default Re: stealthed firewalls.

Quote:
Originally Posted by Hungry Man

Your article isn't completely accurate. "Let’s say I’m an attacker and I ping an IP but there really is no one on the other side. I wouldn’t get no response, I would get one of the “ICMP Unreachable” responses." isn't correct. You'll get an "ICMP Unreachable" response if someone hasn't set up their firewall properly to block sending this response. Otherwise, you get no reponse aka "Request timed out." The same response you would get if the machine didn't exist.

The article at http://www.hansenonline.net/Networking/stealth.html is also not completely accurate. "If there really was no computer (or firewall) there, the router sitting in front would reply for you with a simple ICMP "host unreachable" message back to the attacker." Again, this is a case of a router that is not configured properly. The router should drop any unsolicited inbound packets (or forward them to a non-existent system thus accomplishing the same thing).

And statements like "However, the mere fact the machine doesn't respond one way or the other lets the port scanner know the machine exists!" don't even make sense. You won't get any response from a non-existent system no matter how hard you try - because there's nothing there!

I see a lot of back and forth within these forums lately on this and some shots taken at Steve Gibson which I don't think he deserves. The last time I checked Steve isn't selling a firewall product, so I'm not sure how this is a marketing gimmick and I certainly don't agree that he is a charlatan.

With such diversity of opinions regarding this, I thought I would post my own. Take it or leave it for what it is and have fun stealthing or closing as you see fit.
  #27  
Old February 2nd, 2013, 09:44 AM
Ring0's Avatar
Ring0 Ring0 is offline
Regular Poster
 
Join Date: Aug 2010
Posts: 66
Default Re: stealthed firewalls.

Read carefully:


http://technet.microsoft.com/en-us/l...(v=ws.10).aspx
__________________
We secure the world ;-)
  #28  
Old February 2nd, 2013, 09:46 AM
AMIGA500's Avatar
AMIGA500 AMIGA500 is offline
Very Frequent Poster
 
Join Date: May 2012
Location: United Kingdom.
Posts: 2,575
Default Re: stealthed firewalls.

very interesting.So why has kaspersky decided to have its firewall of a mixed stealth and closed status..?
__________________
Avira Free Antivirus.||Comodo Firewall 5.12.||Sandboxie.||MBAM free version.||

For we wrestle not against flesh and blood, but against principalities, against powers, and against the worldly governors, the princes of the darkness of this world...
  #29  
Old February 2nd, 2013, 03:18 PM
itman itman is offline
Frequent Poster
 
Join Date: Jun 2010
Posts: 567
Default Re: stealthed firewalls.

Check in the Kapersky forums. Topic has been responded by them so many times, I believe they ignore new inquiries about it. Basically they use a different approach and purposely close but do not stealth some ports.
  #30  
Old February 2nd, 2013, 03:23 PM
AMIGA500's Avatar
AMIGA500 AMIGA500 is offline
Very Frequent Poster
 
Join Date: May 2012
Location: United Kingdom.
Posts: 2,575
Default Re: stealthed firewalls.

I have checked in the kaspersky forum and no clear answer comes from them except claims of false marketry by the firewall testing companies.
Its a simple question which deserves a good answer.Is the kaspersky firewall secure or not.?
__________________
Avira Free Antivirus.||Comodo Firewall 5.12.||Sandboxie.||MBAM free version.||

For we wrestle not against flesh and blood, but against principalities, against powers, and against the worldly governors, the princes of the darkness of this world...
  #31  
Old February 2nd, 2013, 07:52 PM
itman itman is offline
Frequent Poster
 
Join Date: Jun 2010
Posts: 567
Default Re: stealthed firewalls.

Quote:
Is the kaspersky firewall secure or not.?
Matousec rated it very good; just slightly below the rating it awarded to Privatefirewall. It was rated higher the Outpost free.

That said, I didn't like Kaperskpy's firewall. I found it difficult to configure and understand for that matter.
  #32  
Old February 3rd, 2013, 04:08 AM
Setcho Setcho is offline
Infrequent Poster
 
Join Date: Sep 2010
Location: UK
Posts: 28
Default Re: stealthed firewalls.

Quote:
Originally Posted by Beethoven1770
very interesting.So why has kaspersky decided to have its firewall of a mixed stealth and closed status..?

Back when I was using KIS 2010 (which was before I had a Router) I used to have the same issues with the shields up test. What I found out at the time was that the KIS 2010 firewall worked using adaptive behaviour which is why a port scan would show different ports closed and stealthed each time it was run. If I ran the test 3 or 4 times in a row it would eventually show all ports were stealthed. I'm not sure if this is still the case with KIS 2013.
  #33  
Old February 3rd, 2013, 07:43 AM
AMIGA500's Avatar
AMIGA500 AMIGA500 is offline
Very Frequent Poster
 
Join Date: May 2012
Location: United Kingdom.
Posts: 2,575
Default Re: stealthed firewalls.

Quote:
Originally Posted by Setcho
Back when I was using KIS 2010 (which was before I had a Router) I used to have the same issues with the shields up test. What I found out at the time was that the KIS 2010 firewall worked using adaptive behaviour which is why a port scan would show different ports closed and stealthed each time it was run. If I ran the test 3 or 4 times in a row it would eventually show all ports were stealthed. I'm not sure if this is still the case with KIS 2013.
Thanks.I discovered this also and to be honest im not too worried about it.The moderators over at kaspersky forums are not too worried about it.
I could pass the shields up test with a few changes of kaspersky firewall settings.
__________________
Avira Free Antivirus.||Comodo Firewall 5.12.||Sandboxie.||MBAM free version.||

For we wrestle not against flesh and blood, but against principalities, against powers, and against the worldly governors, the princes of the darkness of this world...
  #34  
Old February 3rd, 2013, 08:05 AM
southcat southcat is offline
Regular Poster
 
Join Date: Dec 2004
Posts: 188
Default Re: stealthed firewalls.

If you really do worry about this, how about comodo firewall + KAV.
__________________

Realtime : Comodo FW & D+ / KAV 2013 / Spyware Shelter Premium / Admuncher / Sandboxie(paid) / Open DNS
Browser Add-on: Bitdefender TrafficLight / Https Everywhere / Do Not Track Me
On Demand : MBAM(Paid) / Emsisoft Anti Malware 7

Last edited by southcat : February 3rd, 2013 at 08:21 AM.
  #35  
Old February 3rd, 2013, 08:09 AM
AMIGA500's Avatar
AMIGA500 AMIGA500 is offline
Very Frequent Poster
 
Join Date: May 2012
Location: United Kingdom.
Posts: 2,575
Default Re: stealthed firewalls.

Quote:
Originally Posted by southcat
If you really do worried about this, how about comodo firewall + KAV.
No im not worried about it in the slightest.Ive used comodo firewall for years and wanted a change lol.Grabbed KIS for £19,the only security software ive ever paid for.
__________________
Avira Free Antivirus.||Comodo Firewall 5.12.||Sandboxie.||MBAM free version.||

For we wrestle not against flesh and blood, but against principalities, against powers, and against the worldly governors, the princes of the darkness of this world...
 

Wilders Security Forums > Security Products > other firewalls « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 12:31 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums