Quote:
|
Originally Posted by Paranoid2000
CHX-I is best used on proxy servers and gateways rather than standalone computers (which should instead use a personal firewall which can filter traffic by application). See the CHX-I thread for more on this.
|
Somewhat correct. Best when deployed on servers/gateways, but also on workstations under general policy control(user running in non-admin mode, without rights to install arbitrary programs). Which is generally not the case with home users. Any rogue code, once executed with admin rights can simply turn off the packet filter, modify its rules and so on. A personal firewall is a better choice since most of them try to go to the length of addressing such issues and exhibit a much more user friendly environment than CHX-I.
Best Regards,
Stefan