Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other firewalls
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old February 12th, 2006, 07:00 PM
Cormack Cormack is offline
Infrequent Poster
 
Join Date: Feb 2006
Posts: 1
Default Port Forwarding, Any dangers?

I've just switched to an ISP that requires me to use a router, which is ofcourse a good thing.
However, i have no experience with routers but managed to set up a static IP and do some port forwarding for some internet games and applications.
But - correct me if i'm wrong - when i forward these ports they they will be open whenever i'm on the internet(?).
Does that mean that f.e a hacker can exploit these ports with ease or are they still protected by the router (and NAT)?

Secondly, i've read that UPnP is a security hole.
Is there any truth in this?
I mean, if it's secure enough UPnP would make all this port forwarding alot easier.

Last, i'm using Look'n'Stop for app control, is this and the router enough protection (antispy/malware and AV programs excluded)?
  #2  
Old February 12th, 2006, 07:50 PM
CrazyM's Avatar
CrazyM CrazyM is offline
Firewall Moderator
 
Join Date: Feb 2002
Location: BC, Canada
Posts: 2,433
Default Re: Port Forwarding, Any dangers?

Hi Cormack

... and welcome to Wilders

Quote:
Originally Posted by Cormack
I've just switched to an ISP that requires me to use a router, which is ofcourse a good thing.
However, i have no experience with routers but managed to set up a static IP and do some port forwarding for some internet games and applications.
But - correct me if i'm wrong - when i forward these ports they they will be open whenever i'm on the internet(?).
Correct, as long as the router is connected to your ISP they will be open.

Quote:
Does that mean that f.e a hacker can exploit these ports with ease or are they still protected by the router (and NAT)?
It is not the open/forwarded ports that are exploited, there has to be a service listening on those ports that is vulnerable or can be exploited. With port forwarding your game or application would have to running and listening on those ports before any exploit could be attempted.

Quote:
Secondly, i've read that UPnP is a security hole.
Is there any truth in this?
I mean, if it's secure enough UPnP would make all this port forwarding alot easier.
If your games/applications are UPnP enabled, it would be an option to permanent port forwarding as it is more dynamic, allowing forwarded ports when required.

Quote:
Last, i'm using Look'n'Stop for app control, is this and the router enough protection (antispy/malware and AV programs excluded)?
Yes it should be fine. You could modify your application rules in LnS so those inbound connections/rules are only active when the application(s) is running.

Regards,

CrazyM
__________________
"The best thing we can do in cyberspace is exactly what we do in the real world: do our best to manage the risks."
- Bruce Schneier
 

Wilders Security Forums > Security Products > other firewalls « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 10:09 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums