Firewall Configuration Rule

Discussion in 'other firewalls' started by Antus, Apr 6, 2007.

  1. Antus

    Antus Registered Member

    Apr 8, 2006
    Fellows I need some expertise help.....
    Most of you know PcFlank has a stealth test...... I failed on the TC Ping which was unstealth....Can someone provide me with the rule step by step to add or modiy to make this Stealth!!! I am now using Blink INternet Suite.
    Thanks in advance for your help..!!!
  2. Stem

    Stem Firewall Expert

    Oct 5, 2005
    Hello Antus,

    I have not used "Blink INternet Suite".(and do not have a copy at hand)

    If you are connected directly to the internet, then you will need to check the filter rules to block ICMP type 0 (echo reply), or remove the rule that allows this.

    (if you are behind a router, then it will be the router making the reply)
  3. JeffBuck

    JeffBuck Registered Member

    Mar 13, 2007
    If you use XP with SP2 you can do it (block ICMP) through IPSECPOL:

    ipsecpol -w REG -p "Packet Filter" -r "Block ICMP" -f *+0::ICMP -n BLOCK

    but, in this way, you'll drop any icmp packet (no filter as Stem suggests).

    You can filter ICMP traffic in various way, also with windows firewall ... from screenshots I see, Blink Internet Sec. Suite seems to hold on xp services, so ...
