Unsolved
This post is more than 5 years old
2 Intern
•
7.9K Posts
0
1785
August 29th, 2004 15:00
Personal Firewall Poll
Everywhere I look, people continue to praise the "outbound protection" features of 3rd party firewalls and bash window's firewall for lacking such functionality.
I have been running some sort of personal firewall for around 5 years. I have yet to have any "outbound protection" features alert me to an internal threat.
I have anti-virus software (mainly because I'm getting symantec corporate free at the moment from my school), and also run ad-aware and spybot every couple of weeks (which kill nothing but tracking cookies). My first pop-up blocker was SP2's.
So my question is, to people who consider themselves somewhat intelligent (in terms of computers), and who do run AV and anti-spyware programs ... has outbound protection ever actually caught something bad or otherwise helped you? Alternatively, has anything ever gotten around such protective features?
Honest stories only ... and I'm actually somewhat curious to hear the results.
Message Edited by NemesisDB on 08-29-2004 03:06 PM


rickmktg
2 Intern
•
11.9K Posts
0
August 29th, 2004 16:00
kippy50
895 Posts
0
August 29th, 2004 16:00
Dietmar
224 Posts
0
August 29th, 2004 17:00
Everywhere I look, people continue to praise the "outbound protection" features of 3rd party firewalls and bash window's firewall for lacking such functionality.
As a general rule, you will find that the kind of people who are so gung-ho on third-party firewalls, or negative about Windows' built-in firewall, fall in two classes:
Otherwise, it is clear that the built-in firewall that comes with Windows, in particular the one included with SP2, at least meets, and often far exceeds the needs of the general home user. Second, the much-touted outbound protection is near-useless as a defense against true viruses and Trojans. People say that third-party firewalls help them detect spyware. I must confess that I have difficulty commenting on that claim, since I do not really understand why people install spyware on their systems in the first place. In any case, a minimum amount of common sense would be entirely sufficient as a defense against spy- and ad-ware.
I have been running some sort of personal firewall for around 5 years. I have yet to have any "outbound protection" features alert me to an internal threat.
That matches my experience as well. I should also note that I am critical of the practice of many third-party firewall products to wave logs full with thousands of alleged "attacks" in front of their users, when it is clear that 99.99% of these so-called "attacks" represent perfectly harmless, and legitimate, attempts at connecting to common TCP/IP ports.
Alternatively, has anything every gotten around such protective features?
The so-called "protective" features are entirely useless as a defense against a determined piece of malicious code. Once the code is running on your machine (with administrative privileges, of course...) there is no defense. The makers of ZoneAlarm, in particular, are guilty of a blatant lie if they claim otherwise. Code that can disable or circumvent a firewall in your system is freely and easily available on the internet.
Finally, as an aside, one might note that due to its deep embedding into the operating system, Windows' built-in firewall is actually marginally more secure than the third-party solutions.
P.S.: I could add that I have seen far, far more people reporting some sort of problem that was due to their third-party firewall than I have seen people experience any kind of concrete benefit. Draw your own conclusions...
Message Edited by Dietmar on 08-29-2004 01:34 PM
scoobydooby
2 Intern
•
495 Posts
0
August 29th, 2004 17:00
"....firewalls aren't part of Windows. "
Now it is.
I have the McAfee firewall, and I have received warnings of some programs trying to connect to the internet - most recently DivX player - why? (the program was up to date).
Probably nothing bad would have happened, but there are reports of dialers dialing out long distance; the customer finding out only when he receives his telephone bill from Bell Canada.
Also reports of keystroke loggers, communicating out private information (such as credit card numbers, bank info, passwords,...).
Even though it is less likely you will need this outbound protection if you already have incoming protection - there will always be those who will try to beat that inbound protection you do have.
So I do think it is also important to have outbound protection.
kippy50
895 Posts
0
August 29th, 2004 19:00
Bologny Dietmar, as usual your assuming way too may things and wrong. Im not going to debate this issue with you again, but its no accident that every major site, magazine, etc, does not recommend the new windows firewall for the exact reason we are discussing here. Kip
100mph
1.2K Posts
0
August 29th, 2004 22:00
If someone has ghosts in their system, then ZoneAlarm is the one to use. I’ve heard that the last version (v.5) is worst than the previous (v.4.?), and has some bugs, though.
Sygate Personal Firewall Pro is good too. Never used Symantec/Norton Firewall, but most of the feedback is good ... unless it was installed as a part of a "package" ... then some users complain about slow system ... which is easy to explain by the number of background processes. ;)
Dietmar
224 Posts
0
August 29th, 2004 22:00
as usual your assuming way too may things and wrong.
Well, you would have to demonstrate how any of the things I said are wrong.
Flooby
2 Intern
•
3K Posts
0
August 29th, 2004 23:00