Re: XP Firewall or Zone Alarm ?

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



frodo@xxxxxxxxxxxx wrote:
Are you dial-up, or behind a residential gateway (w/ NAT)?  If the later
then stick w/ XP's Firewall, it's good enough in combo w/ the NAT.  If
dial-up you may appreciate ZA's finer control.


That's no where close to being true.

    If you use a router with NAT, it's still a very good idea to use a
3rd party software firewall.  Like WinXP's built-in firewall,
NAT-capable routers do *nothing* to protect the user from him/herself
(or any "curious," over-confident teenagers in the home).  Again --
and I cannot emphasize this enough -- almost all spyware and many
Trojans and worms are downloaded and installed deliberately (albeit
unknowingly) by the user.  So a software firewall, such as Sygate or
ZoneAlarm, that can detect and warn the user of unauthorized out-going
traffic is an important element of protecting one's privacy and
security.  (Remember: Most antivirus applications do not even scan for
or protect you from adware/spyware, because, after all, you've
installed them yourself, so you must want them there, right?)

    I use both a router with NAT and Sygate Personal Firewall, even
though I generally know better than to install scumware.  When it
comes to computer security and protecting my privacy, I prefer the old
"belt and suspenders" approach.  In the professional IT community,
this is also known as a "layered defense."  Basically, it comes down
to never, ever "putting all of your eggs in one basket."



Note that SP2's firewall is almost as good as ZA,

..... not even close!




--

Bruce Chambers

Help us help you:
http://dts-l.org/goodpost.htm
http://www.catb.org/~esr/faqs/smart-questions.html

You can have peace. Or you can have freedom. Don't ever count on having both at once. - RAH
.




Relevant Pages

  • Re: Routers Firewall
    ... > indicates that it has firewall technology, then the router doesn't have a ... What your router does have is NAT. ... ZA is a fine product which will protect a computer ... Port 80 is the WEB access port and port 21 is the FTP ...
    (comp.security.firewalls)
  • Re: New modem and iptables...
    ... The router performs firewall and NAT functions ... If you want to persuade me it's a modem, ... it's a router and _it_ has your public Internet address. ... It also does NAT (otherwise you couldn't have a private IP address on ...
    (Fedora)
  • Re: Would a firewall prevent Sasser worm?
    ... >> the same level of protection that I would have with any NAT router? ... >There are a variety of known attacks which can crash routers, ... >Firewall capability allows you to modify the NAT behaviour to allow selected ...
    (comp.security.misc)
  • Re: Would a firewall prevent Sasser worm?
    ... >> the same level of protection that I would have with any NAT router? ... >There are a variety of known attacks which can crash routers, ... >Firewall capability allows you to modify the NAT behaviour to allow selected ...
    (comp.security.firewalls)
  • Re: Would a firewall prevent Sasser worm?
    ... >> the same level of protection that I would have with any NAT router? ... >There are a variety of known attacks which can crash routers, ... >Firewall capability allows you to modify the NAT behaviour to allow selected ...
    (alt.computer.security)