Outpost 2009 Free or Pro

Discussion in 'other firewalls' started by Toby75, May 4, 2009.

Thread Status:
Not open for further replies.
  1. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    sorry, 1 more question:

    How did you know to block that IP range when I told you that my IP is 192.168.1.37?
     
  2. Stem

    Stem Firewall Expert

    Joined:
    Oct 5, 2005
    Posts:
    4,948
    Location:
    UK
    It would be difficult for anyone on your LAN to make compromise against you.

    What you need to ensure is that any popup for unsolicited inbound is simply blocked. Unless of course the inbound is actually known/ expected, for such as a P2P client or similar.

    .


    - Stem
     
  3. Stem

    Stem Firewall Expert

    Joined:
    Oct 5, 2005
    Posts:
    4,948
    Location:
    UK
    It is the default range used for your IP on most home routers. The gateway is normally 192.168.1.1, and broadcasts are made over 192.168.1.255, so you block all in between


    - Stem
     
  4. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    OK -- have a good night Stem!
     
  5. Stem

    Stem Firewall Expert

    Joined:
    Oct 5, 2005
    Posts:
    4,948
    Location:
    UK

    Block them.

    - Stem
     
  6. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    Hi Stem,

    I just noticed that you had me set the IP blocklist from 192.168.1.2-192.168.1.254

    Should it be to 192.168.1.255?
     
  7. Stem

    Stem Firewall Expert

    Joined:
    Oct 5, 2005
    Posts:
    4,948
    Location:
    UK
    Hi Toby.

    No. You need to allow 192.168.1.255 for broadcasts. You could block them but it can cause connection problems.



    - Stem
     
  8. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    OK Stem,

    I should have trusted your judgement -- sorry.

    Any way you can examine this latest log? I want my computer locked down solid....just want your opinion.
     

    Attached Files:

    Last edited: May 8, 2009
  9. Stem

    Stem Firewall Expert

    Joined:
    Oct 5, 2005
    Posts:
    4,948
    Location:
    UK
    Multicast is still being allowed.

    Did you change the rules for svchost as I put forward in this post? because those comms are still being allowed.

    Check those rules.


    - Stem
     
  10. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    Yes, they are blocked o_O
     
  11. wat0114

    wat0114 Guest

    If you don't mind my input, please check the screenshot to compare your settings against it.
     

    Attached Files:

  12. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    Hi wat0114,

    Yes, this is exactly how it's set.
     
  13. Stem

    Stem Firewall Expert

    Joined:
    Oct 5, 2005
    Posts:
    4,948
    Location:
    UK
    That would indicate non-enforcement of Rules.

    Open OP, settings, Network rules- Global rules: select "Applied before application rules" then click "Add".In the rule windows enter the details as shown exactly.

    Then OK

    01.jpg


    - Stem
     
  14. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    OK done...I'll post another log.

    What does non-enforcement mean...is there a bug in the software? I'll restart my computer and be right back. I know it's late there so if you want you can look at it tomorrow.
     
  15. Stem

    Stem Firewall Expert

    Joined:
    Oct 5, 2005
    Posts:
    4,948
    Location:
    UK
    It means rules in place are not being used/enforced, instead they are being bypassed.


    - Stem
     
  16. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    OK here it is

    I still have it set to rules wizard...is this ok Stem? Could this be the problem?
     

    Attached Files:

  17. Stem

    Stem Firewall Expert

    Joined:
    Oct 5, 2005
    Posts:
    4,948
    Location:
    UK
    Much better.


    open OP/ settings/ Application Rules and find "Searchfilterhost.exe". open the rules for that application (double click it), in the "General" tab select "Block all activity".


    Clear your firewall log and post a new log in about 6 hours or so.


    You should make a setting of "disable automatic rule creation" in the "ImproveNet" settings.

    - Stem
     
  18. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    Here's the snap shot:
     

    Attached Files:

    • PIC.jpg
      PIC.jpg
      File size:
      34.2 KB
      Views:
      331
  19. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    OK Stem, can't thank you enough.
     
  20. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    This is what I have it set to. I get all prompts....and have to manually accept.
     
  21. Stem

    Stem Firewall Expert

    Joined:
    Oct 5, 2005
    Posts:
    4,948
    Location:
    UK
    You could change the setting to "Block most", but if you have application(s) that do need Internet access and they do not currently have rules, then they will be blocked.

    It is up to you if you want to change that setting.


    - Stem
     
  22. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    Yeah, I ran all of my programs with the rules wizard on...I justy changed it to block most so I should be fine.
     
  23. Stem

    Stem Firewall Expert

    Joined:
    Oct 5, 2005
    Posts:
    4,948
    Location:
    UK
    Sounds good.


    - Stem
     
  24. Toby75

    Toby75 Registered Member

    Joined:
    Mar 10, 2006
    Posts:
    480
    Hi Stem,

    Ok here is the latest log.
     

    Attached Files:

  25. Stem

    Stem Firewall Expert

    Joined:
    Oct 5, 2005
    Posts:
    4,948
    Location:
    UK
    Hi Toby,

    From a security point of view, I see no current problems in your log. So all OK.

    However. There are some inconsistencies in the log that show possible problems with the ability of OP to filter packets.

    Example:

    HopbyHop allowed, but also blocked due to no rule. I will try and find time to look into that. But is is not a problem for you to concern.

    hopbyhop.jpg

    - Stem
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.