Wikiposts
Search
Computer/Internet Issues & Troubleshooting Anyone with questions about the terribly complex world of computers or the internet should try here. NOT FOR REPORTING ISSUES WITH PPRuNe FORUMS! Please use the subforum "PPRuNe Problems or Queries."

Firewall Question

Thread Tools
 
Search this Thread
 
Old 15th Feb 2010, 08:29
  #1 (permalink)  
Thread Starter
 
Join Date: Jun 2003
Location: UK
Posts: 474
Likes: 0
Received 0 Likes on 0 Posts
Firewall Question

I'm a bit confused. I've been told by my computer-savvy friend,that, since I access the internet a router, with anti-virus software on my system, I don't need a third-party firewall, since Windows' inbuilt Firewall, which I have switched on all the time, will do the job adequately.

However, if this is the case, why would anyone purchase third-party firewall protection? Am I safe?
Tosh McCaber is offline  
Old 15th Feb 2010, 09:49
  #2 (permalink)  
Hippopotomonstrosesquipidelian title
 
Join Date: Oct 2006
Location: is everything
Posts: 1,826
Likes: 0
Received 0 Likes on 0 Posts
You're safe enough. Windows Firewall and Microsoft Security Essentials are fine for most consumers.
Bushfiva is offline  
Old 15th Feb 2010, 15:37
  #3 (permalink)  
bnt
 
Join Date: Feb 2007
Location: Dublin, Ireland. (No, I just live here.)
Posts: 733
Received 6 Likes on 5 Posts
Yeah, you should be fine. I'm assuming your router does NAT (Network Address Translation), which means that your computer isn't actually on the Internet (in IP Address terms) and can't be accessed directly from there.

(There is a way of allowing access from the other Internet systems, called "port forwarding" on the router, but you'd have to turn it on and set it up. If anyone (or a website) tells you to do that, be sure you understand the reasons in full: if not, don't.)
bnt is offline  
Old 15th Feb 2010, 17:22
  #4 (permalink)  
 
Join Date: May 2009
Location: N Lancs
Posts: 52
Likes: 0
Received 0 Likes on 0 Posts
that's all Ive had for years

keep the AV up to date and scan at least weekly
txdmy1 is offline  
Old 15th Feb 2010, 17:27
  #5 (permalink)  
More bang for your buck
 
Join Date: Nov 2005
Location: land of the clanger
Age: 82
Posts: 3,512
Likes: 0
Received 0 Likes on 0 Posts
One advantage of using something like Zone Alarm firewall is that it can be set to ask you before it allows a program to access the internet giving you the chance to stop any rogue programs, such as keyloggers, from leaking passwords etc.
green granite is offline  
Old 15th Feb 2010, 21:05
  #6 (permalink)  
 
Join Date: Dec 2005
Location: Wellington,NZ
Age: 66
Posts: 1,678
Received 10 Likes on 4 Posts
what GG said.
Think of it as a safety net, the last chance to prevent any undetected malware from phoning home. (Even that isn't guaranteed. Some malware installs/modifies a system file, so it looks like the system -previously allowed- is phoning home, and not all firewalls are necessarily able to detect the change. Most should.)
Prior to that situation occurring, you have defenses in place that should stop the vast majority of it. In theory.
Tarq57 is offline  
Old 15th Feb 2010, 21:11
  #7 (permalink)  
Spoon PPRuNerist & Mad Inistrator
 
Join Date: Sep 2003
Location: Twickenham, home of rugby
Posts: 7,394
Received 251 Likes on 168 Posts
I would suggest that if one operates with a hardware firewall, good (regularly updated) antivirus and (crucially), not as an admin then one really has very little to worry about. AV should be set to on-access scanning, with regular full sweeps.

A SW firewall and anti-malware are good to have, but not as important.

Obviously, if one is using public access points with your laptop, then a good SW firewall is essential (not Windows, although it's better than nothing). And again, running as an ordinary user.

SD
Saab Dastard is offline  
Old 16th Feb 2010, 05:08
  #8 (permalink)  
Upto The Buffers
 
Join Date: Apr 2006
Location: Leeds/Bradford
Age: 48
Posts: 1,112
Likes: 0
Received 0 Likes on 0 Posts
Good article on the use of svchost here:
What is svchost.exe And Why Is It Running? - the How-To Geek
Shunter is offline  
Old 16th Feb 2010, 14:38
  #9 (permalink)  
 
Join Date: Aug 2002
Location: Earth
Posts: 3,663
Likes: 0
Received 0 Likes on 0 Posts
I'm assuming your router does NAT (Network Address Translation), which means that your computer isn't actually on the Internet (in IP Address terms) and can't be accessed directly from there.
Be carful not to spread the wrong message.....

See .....
TeamViewer - Free Remote Access and Remote Desktop Sharing over the Internet

and many other similar "legit" examples..... then consider the "dark side" possibilities.

It's easy to create a backdoor in through NAT......
mixture is offline  
Old 16th Feb 2010, 20:40
  #10 (permalink)  
bnt
 
Join Date: Feb 2007
Location: Dublin, Ireland. (No, I just live here.)
Posts: 733
Received 6 Likes on 5 Posts
Originally Posted by mixture
It's easy to create a backdoor in through NAT......
The way those kinds of programs work, they require the client PC to open up a connection first. Only then is there an open NAT port through which data can enter. Assuming the NAT itself isn't broken and ports aren't being forwarded, an external computer can not open a port: it has to be invited in. That's also how multi-player games can be made to work through NAT, by the client connecting to a central server, thus opening a connection through which game data can be transferred. That's not a back door, it's a front door.

Of course rogue programs can do this from the PC, but when that happens, a firewall isn't guaranteed to help, either. I never said NAT was a total security solution, but if you run a good up-to-date virus checker, and surf responsibly (using Firefox with NoScript), you can be pretty confident IMHO.
bnt is offline  

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off



Contact Us - Archive - Advertising - Cookie Policy - Privacy Statement - Terms of Service

Copyright © 2024 MH Sub I, LLC dba Internet Brands. All rights reserved. Use of this site indicates your consent to the Terms of Use.