Re: Richard... add-on Q: re XP Firewall;....

Tech-Archive recommends: Fix windows errors by optimizing your registry

From: Richard (hawkinsfamily3_at_DIGITbtinternet.com)
Date: 02/27/04


Date: Fri, 27 Feb 2004 09:08:07 -0000


"Regina" <anonymous@discussions.microsoft.com> wrote in message
news:026101c3fcea$0233c580$a601280a@phx.gbl...
> Hi!
>
> I've been meaning to post this question, and I see from
> your reply to "rdbr" that you're in tune with what I need
> to know:
>
> When I run a Symantec on-line Security Check, I pass with
> pretty high marks, except for one:
>
> I always get the message that I have one port open which
> could be attacked. My questions are:
>
> (1) Isn't it somewhat self-serving for Symantec to warn
> me about an ICMP Ping? I mean, how can I run an "on-
> line" security check *without* a port being open? (I'm
> an intermediate newbie, so please excuse if this is a
> dumb question.)
>
> (2) If I want to "disguise" an open port, how would I do
> this? I have my "zone security" customized to moderate
> levels (per instructions from Tourbus) and I don't have
> any problems surfing; however, I'd like to know how to
> protect an individual port if this is indeed my
> computer's only "vulnerable" area.

Regina,

When you run an on line security check you give specific permission to let
your computer be scanned.
If all your ports are in stealth mode the only information the scanner can
report will be your IP address.
Here is a useful URL which tells you how to enable or disable ICMP echo
requests.
http://www.dslreports.com/faq/tweaks#3 Not allowing Pings makes your
computer that much more secure and does not have any bad effects . Should
you wish to respond to Pings you can always switch them back on. I leave
mine switched off all the time.

Richard



Relevant Pages

  • RE: snort- problems
    ... #snort is monitoring only the machine that it is installed on. ... port on the switch that it's destination host is attached to. ... Security Engineer ...
    (Focus-IDS)
  • RE: rogue IP address
    ... Sorry if this seems like a dumb question, but you mentioned a "port to IP" ... Does your switch have a "port to MAC address table"? ... prospectus based upon the core principle concepts of security. ...
    (Security-Basics)
  • Telnet Port 23 issue
    ... I ran a security scan on my PC thanks to Symantecs Online ... It informs me that Telnet Port 23 is wide ... apparently despite all this Symantec reckon that they can ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Extender networking problem
    ... For both of you with problems, while a switch should work fine, ... switch and a D-Link 8 port that work fine. ... Do the router logs show any information about DHCP failures? ... >Security Log: No Events Reported ...
    (microsoft.public.windows.mediacenter)
  • RE: switch jamming
    ... The Cisco switch code for many of their switches allows the use of port ... security as mentioned below. ... The Cisco switches at least can be secured against this, ...
    (Vuln-Dev)