Re: Networking problems with router between 2 p.c.'s

From: Steve Winograd [MVP] (winograd_at_pobox.com)
Date: 08/21/04


Date: Fri, 20 Aug 2004 20:26:16 -0600


>"David" <anonymous@discussions.microsoft.com> wrote in message
>news:9d6501c48679$c3c92280$a601280a@phx.gbl...
>> I think many people are having the same trouble I have
>> had trying to get 2 or more p.c.'s to network with WinXP
>> (either Home or Professional), and using a broadband
>> router for internet access. Please see my original post
>> on 18-Aug @ 11:10pm and the subsequent reply from Steve
>> Winograd. The trick seems to be that if you are using a
>> router for connection between the p.c.'s, (and a modem
>> behind that for internet connection), then you should
>> disable the internet connection firewall in the LAN
>> connections setup (in 'advanced' tab), on each machine.
>> So in this case the router will provide some firewall
>> protection and you will be able to network okay between
>> p.c.'s. If your p.c. connects directly to the internet
>> via the modem, then you must enable the firewall for that
>> connection only, to provide youself with some protection.
>> Bye. David.

I agree, David. Running XP's Internet Connection Firewall does
nothing useful on a computer that connects to the Internet through a
broadband router. The router acts as a firewall, so ICF is at best
redundant. By design, ICS blocks file and printer sharing, so it
isn't suitable for use on a local area network.

It's different with the Windows Firewall in Service Pack 2, which can
allow file and printer sharing while closing other LAN ports that are
unnecessary and that can propagate network worms.

As Jack says, neither a router nor ICF can protect against unwanted
outgoing traffic from your computer due to spyware and Trojan horse
programs. However, by the time a malicious program starts sending
information out from your computer, the computer is badly compromised,
and simply running a firewall to block outgoing traffic isn't enough.
You need to be running a spyware removal program regularly. No
spyware = no undesired outgoing traffic.

I don't run outgoing firewalls on my computers, but I realize that
some people feel safer using them.

-- 
Best Wishes,
Steve Winograd, MS-MVP (Windows Networking)
Please post any reply as a follow-up message in the news group
for everyone to see.  I'm sorry, but I don't answer questions
addressed directly to me in E-mail or news groups.
Microsoft Most Valuable Professional Program
http://mvp.support.microsoft.com


Relevant Pages

  • RE: can ping but not browse
    ... I have stopped the firewall. ... # are safed from all (security) hazards. ... firewall/bastion host to the internet ... # internet and to an internal network, ...
    (Fedora)
  • Re: Host Computer with ICS cannot be accessed
    ... You read my mind on the router thing. ... My home network is a piece of cake... ... >>firewall settings, not that I've found so far, but I'll keep looking. ... and we couldn't get file sharing working until ...
    (microsoft.public.windowsxp.network_web)
  • Re: share my printer between 2 computers and surf with 2 computers at same time
    ... The main choice you have to make is whether to have the router include wireless capability or not. ... Because wireless routers for home use are relatively inexpensive these days, I'd suggest buying a wireless router even if you don't initially intend to use that capability. ... If you already have a UTP cable going between upstairs and downstairs, you can use that to have a wired network. ... caused by 1) a misconfigured firewall; ...
    (microsoft.public.windowsxp.network_web)
  • Re: share my printer between 2 computers and surf with 2 computers at same time
    ... The main piece of hardware you need to buy is a router. ... Because wireless routers for home use are ... you can use that to have a wired network. ... caused by 1) a misconfigured firewall; ...
    (microsoft.public.windowsxp.network_web)
  • Re: Unable to obtain a server- assigned IP address Try again later or enter an IP address in Net
    ... I can go to Control Panel - Network and Internet Connections - ... If yours is not a subset of your router, ... I have a LINKSYS router (4 port connection) - I have my cable modem ...
    (microsoft.public.pocketpc)