Which firewall do you use?

Discussion in 'other firewalls' started by firefox2008, Nov 15, 2007.

Thread Status:
Not open for further replies.
  1. Chuck57

    Chuck57 Registered Member

    Joined:
    Sep 2, 2002
    Posts:
    1,770
    Location:
    New Mexico, USA
    I just removed Blink to try Webroot Desktop firewall. Had it running a couple of days now and so far no complaints. I've checked it periodically since it does have DSA and DSA seems to forget things. In the couple of days though, no problem yet. It's all still in learning mode.

    I've noticed that my computer is a bit faster, not a huge amount but noticeable. For antivirus, I installed AVAST today because I've always liked and trusted AVAST.

    I'm still working my way through a learning process with WDF, but it all seems fairly simple. I can't say whether I like it enough to keep or if I'll go back to Blink. We're on a hardware firewall but I like being able to keep an eye on what goes out, too.
     
  2. feniks

    feniks Registered Member

    Joined:
    Sep 30, 2007
    Posts:
    130
    Uncheck all learning modes in WDF settings and you will see how responssive it is. :) In settings and in settings/advanced and in settings/advanced/view edit application list/processes - uncheck all training and check all detections.

    And of course Process monitor on high.
     
    Last edited: Nov 18, 2007
  3. MaB69

    MaB69 Registered Member

    Joined:
    Dec 9, 2005
    Posts:
    540
    Location:
    Paris
    Hi all,

    Online Armor firewall suits nicely with security setup

    Regards,

    MaB
     
  4. LoneWolf

    LoneWolf Registered Member

    Joined:
    Jan 2, 2006
    Posts:
    3,784

    So the admuncher problem is fixed?
     
  5. MaB69

    MaB69 Registered Member

    Joined:
    Dec 9, 2005
    Posts:
    540
    Location:
    Paris
    Hi Lonewolf,

    No the conflict is not yet fixed (i switched to OA free) but according Mike Nask, next Ad Muncher version (4.72) will fix it.

    Regards,

    MaB
     
  6. LoneWolf

    LoneWolf Registered Member

    Joined:
    Jan 2, 2006
    Posts:
    3,784
    Thanks for the info. :D
     
  7. jpcummins

    jpcummins Registered Member

    Joined:
    Feb 20, 2006
    Posts:
    628
    Location:
    Terre Haute, IN
    I have been using Sygate Personal Firewall Professional for a number of years. Most likely I will continue using the firewall until convinced to change. I have heard so many pros and cons regarding various firewalls that changing now is not a priority for me. I probably have listened to Mrkvonics' comments most because they bolster my confidence in Sygate. I am including in this post the following link to the "Sygate personal firewall guide" which has helped me and hopefully it may help other Sygate users. http://www.kotiposti.net/string/SPF_eng/SPFGuide.html
     
  8. subset

    subset Registered Member

    Joined:
    Nov 17, 2007
    Posts:
    825
    Location:
    Austria
    Hi,

    I know this SPFGuide, on Sygate.de is an additional advice about ICMP.
    http://www.sygate.de/konfiguration/ICMP.html
    So this was the advanced rule I always added first:
    Rule Summary:
    This rule will allow both incoming and outgoing traffic from/to all hosts on ICMP type 0,3,4,8,11,12,13,14. This rule will be applied to all network interface cards.

    So my questions are:
    Is this advice correct, to allow ICMP traffic?
    And if so, are there any changes in ICMP types if you are behind a router?

    Cheers!
     
  9. gud4u

    gud4u Registered Member

    Joined:
    Nov 9, 2004
    Posts:
    206
    What Diver said - Comodo 2.4 is outstanding - whether you're a novice or a security expert.

    My current security setup:
    - NAT router with SPI protection.
    - Comodo Firewall Pro RC1 (Network Monitor with HIPS active).
    - Spywareblaster innoculator.
    - Comodo BOClean 4.25 resident anti-spyware.*
    - NOD32 V3 antivirus.
    - SuperAntiSpyware (manual scan only).*
    - Using IE7 browser.
    - TrueImage 10.0 Backup/Restore program.

    * BOClean protection is excellent for detection of attempted malware start-ups, but ignores trivia such as adware cookies - you need a manual AS scanner.

    All function flawlessly together.

    Hope this helps!
     
    Last edited: Nov 19, 2007
  10. Hairy Coo

    Hairy Coo Registered Member

    Joined:
    Oct 19, 2007
    Posts:
    1,486
    Location:
    Northern Beaches
    gud4u

    So few people seem to include backups as a security feature.

    In fact I use ATI I0 to schedule 2 daily backups quietly in the backgound.

    No matter what nasties may get through security (and so very few ever have ), I will never loose more than a few hours of data at the very most.
     
  11. subset

    subset Registered Member

    Joined:
    Nov 17, 2007
    Posts:
    825
    Location:
    Austria
    Hi,

    I’m doing exactly the same, using ATI for backups too.

    BTW before ATI I used PowerQuest’s Drive Image, but Symantec decided to absorb Powerquest like they later absorbed Sygate. Rapacious beast.:thumbd:

    So using an image tool, I don’t have to be too afraid installing potential critically software or becoming a malware victim.
    Booting up from CD and restoring partitions resolves nearly every problem.

    Cheers!
     
  12. wat0114

    wat0114 Guest

    These ICMP rules I think are safe:

    • Echo Request type 8 outgoing
    • Echo Reply type 0 incoming
    • ICMP Unreachable type 3 incoming
    • ICMP Time Exceeded Type 11 incoming

    There is also router discovery, Type 10 which may be necessary, depending on your setup.
     
  13. subset

    subset Registered Member

    Joined:
    Nov 17, 2007
    Posts:
    825
    Location:
    Austria
  14. wat0114

    wat0114 Guest

    I'm not sure subset. the only one I might question is ICMP = 3 IN OUT, since only if the pc belongs on a LAN would the Out direction perhaps be necessary. Someone with better knowledge in this area could probably elaborate.
     
  15. EASTER

    EASTER Registered Member

    Joined:
    Jul 28, 2007
    Posts:
    11,126
    Location:
    U.S.A. (South)
    After a brief stint with COMODO in my first change of firewalls in over 2 years after ZA, Kerio 2.15 returned by reappealing quickly to me again. I been pretty much resigned to it ever since. It's been long considered outdated but with a solid HIPS and a few other newcomer risk-preventers it's filled the need on XP Pro exceptionally well enough to depend on for the long term. But now enters OnlineArmor with it's dual capabilities and specialized firewall, so this one seems a very viable candidate now to maybe make a first replacement since departing ZA. If it's results (free version) prove out everything it's been raved about recently, theres a real opportunity it just might finally win implimentation into my overall strategy and then on over to the full program with all features. This is another one of those new golden opportunities where a very new program debut has the substance/results sought after to win over and replace whats been a long standing app where theres long been little interest to veer away from an old standard.
     
  16. rolarocka

    rolarocka Guest

    i used to use a firewall behind a nat router. but not anymore, too redundant imo. but its fun to try new firewalls etc.
     
  17. DIgiDis

    DIgiDis Registered Member

    Joined:
    Oct 15, 2006
    Posts:
    49
    I was going back and forth between ZoneAlarm and Outpost for a couple of years (with a brief trial of Comodo in between) until I found Online Armor a couple of months ago. No more problems and my machine has never been more responsive.
     
  18. G1111

    G1111 Registered Member

    Joined:
    May 11, 2005
    Posts:
    2,294
    Location:
    USA
    I originally had McAfee firewall, then ZA. I've been with Outpost now for a couple of years. Currently Using Outpost Pro 6.0.2175.8316. The latest version is stable on my machine.
     
  19. rsblanchard

    rsblanchard Registered Member

    Joined:
    Feb 6, 2008
    Posts:
    1
    The ICMP "Destination (Host) Unreachable" is Type 3 Codes(Subtypes) 1 & 7 (incoming).
    The ICMP "Destination Unreachable/Fragment-size-re-state" is Type 3 Code(Subtype) 4 (incoming).
    I have not allowed other ICMP Type 3 messages incoming through my Intego firewall on my Mac.

    ICMP types and codes(subtypes) can be found at:
    http://www.spirit.com/Resources/icmp.html
    and a useful article at:
    http://www.spirit.com/Network/net0700.html
     
    Last edited: Feb 6, 2008
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.