Really Really Powerful Inbound Protection

Discussion in 'other firewalls' started by Konata Izumi, Apr 15, 2010.

Thread Status:
Not open for further replies.
  1. acuariano

    acuariano Registered Member

    Joined:
    Nov 4, 2005
    Posts:
    786
    is shieldsup still the best site to test the firewall, hardware or software yet?
     
  2. wat0114

    wat0114 Guest

    Maybe this is a joke? only an enterprise piece of hardware worth big $$$ will provide "Really Really Powerful" protection anyway. Seeking this for your home pc is a complete waste of time and money. Windows fw or a home NAT router or one of the many 3rd party fw's will provide more than adequate inbound protection. You can scan 'til the cows come home, but you will always get "stealthed" on even the most basic fw. Big deal.
     
  3. doktornotor

    doktornotor Registered Member

    Joined:
    Jul 19, 2008
    Posts:
    2,047
    It will only test your ports, and it will provide completely misguided information on so called stealth, ping etc. Also, for most people it will test their router instead of the FW on their computer without them even realizing it.

    Details in this thread.
     
  4. Creer

    Creer Registered Member

    Joined:
    Jun 29, 2008
    Posts:
    1,345
    Last edited: Apr 20, 2010
  5. tipo

    tipo Registered Member

    Joined:
    Dec 29, 2008
    Posts:
    440
    Location:
    romania
    MATOUSEC HAS HIPS TESTS. NOT INBOUND/OUTBOUND FIREWALL TESTS!
     
  6. pandlouk

    pandlouk Registered Member

    Joined:
    Jul 15, 2007
    Posts:
    2,976
    Untangle Home Free Edition costs.... 0$$$. ;)

    Panagiotis
     
  7. Meriadoc

    Meriadoc Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    2,642
    Location:
    Cymru
    pandlouk beat me to it...Untangle

    I use a hardware appliance with a second router separating the family computers from my little network, windows firewall and cfos which has a very nice little firewall and excellent traffic shaping for my limited 8Mb connection.

    cfos - traffic shaping/layer 7 protocol detection/state inspection/rtp check/ip blocker.

    other suggestions relating to op...

    snort
    smoothwall
    m0n0wall

    installed/VMs
     
  8. acuariano

    acuariano Registered Member

    Joined:
    Nov 4, 2005
    Posts:
    786
    so...hardware needs a software firewall like windows firewall or a better one?.
    and...does any site provide a truly firewall report -hardware and software-
     
  9. Konata Izumi

    Konata Izumi Registered Member

    Joined:
    Nov 23, 2008
    Posts:
    1,557
    I'm satisfied with LooknStop but I'll do an image restore and try Untangle later.
    Will it work even if I don't have a router?
     
  10. JerryM

    JerryM Registered Member

    Joined:
    Aug 31, 2003
    Posts:
    4,306
    Thanks. Is there no relationship that would indicate the inbound/outbound protection?

    Regards,
    Jerry
     
  11. wat0114

    wat0114 Guest

    Yeah, the Untangle or similar option is nice and practical for the hobbyist/enthusiast, but I doubt it's gonna be embraced by the average joe, having to build their own fw with a reasonably powerful spare pc just kicking around the house. I wanted to try this actually, but my oldest pc I recently took to the recyclers wasn't even up to snuff to meet the hardware requirements.
     
  12. doktornotor

    doktornotor Registered Member

    Joined:
    Jul 19, 2008
    Posts:
    2,047
    Uhm... You need to disable any router/gateway/whatever other firewalls if you want to test the one on your computer for incoming traffic protection.

    Other than that - the usual online tests like GRC test incoming ports stuff only - open/closed/stealth, that's pretty much it.
     
  13. acuariano

    acuariano Registered Member

    Joined:
    Nov 4, 2005
    Posts:
    786
    not ..i have a westell versalink from verizon,and on dslreport there is a set of rules for it inbound and outbound.....and i have windows firewall.
    but i thought something else is neccesary.
     
  14. Meriadoc

    Meriadoc Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    2,642
    Location:
    Cymru
    for anyone not wanting to build a firewall with the spare pc, there are software and vm versions knocking about.

    Untangle can also be installed into Windows. Astaro has a vm - they are all extremely easy to use.
     
    Last edited: Apr 20, 2010
  15. doktornotor

    doktornotor Registered Member

    Joined:
    Jul 19, 2008
    Posts:
    2,047
    o_O Once again, with another firewall already filtering traffic before it's reached the computer you are trying to test, you can't test anything at all.
     
  16. zip

    zip Registered Member

    Joined:
    Apr 19, 2007
    Posts:
    359
    Location:
    Mars
    I have fixed my post & link to the FREE version of Look n Stop, Look ‘n’ Stop Lite.
     
  17. Brummelchen

    Brummelchen Registered Member

    Joined:
    Jan 3, 2009
    Posts:
    5,920
    seems a bit outdated and not for xp!?
    from 2006 - reason why i dropped outpost 3.51 last year although it had all neccessary for me.
     
  18. Nebulus

    Nebulus Registered Member

    Joined:
    Jan 20, 2007
    Posts:
    1,635
    Location:
    European Union
    I recommend Kerio 2.1.5 too if you want a firewall with excellent logs, or Sygate 5.5. Both work on XP but I doubt they are compatible with Vista/Win7.
     
  19. Creer

    Creer Registered Member

    Joined:
    Jun 29, 2008
    Posts:
    1,345
    I remember that I had a famous BSOD with Kerio 2.1.5 on old XP machine (fwdrv.sys driver error).
     
  20. dave88

    dave88 Registered Member

    Joined:
    Feb 2, 2007
    Posts:
    177
    Thanks, I was looking for this one a while back, and never found it.
     
  21. 2good

    2good Guest

  22. luciddream

    luciddream Registered Member

    Joined:
    Mar 22, 2007
    Posts:
    2,545
    ^ Zactly ^ A good hardware based solution is always the best. It stops the attacks before they ever get to your computer and takes the resource strain off of it. The only reason I use a software firewall in addition is because of the nice, granular, simple rule setting, and outbound/application rules. If you're not worried about those latter two things though, and solely about inbound protection, go get yourself a hardware firewall with SPI.
     
  23. sunoracle

    sunoracle Registered Member

    Joined:
    Mar 25, 2010
    Posts:
    51
    Even a "hardware" firewall runs software. :)

    A better way of putting it might be that what is best is a dedicated firewall that is separate from the desktops and servers that users interact with.
     
  24. luciddream

    luciddream Registered Member

    Joined:
    Mar 22, 2007
    Posts:
    2,545
    Yeah, for the sake of accuracy that is the better way to put it. Anyhow I think most people agree that it's the single best security tool you can have... after of course end user know-how, which there is so substitute for.

    Even the SPI I mentioned is overkill. A simple NAT router = gold.
     
  25. TheMozart

    TheMozart Former Poster

    Joined:
    Jan 6, 2010
    Posts:
    1,486
    Define "lite".
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.