If you don't understand *what* TCP is and, at least superficially, *how* it does its work, you have no hope of preventing intrusions. JOIN THE DISCUSSION Tweet Chris Hoffman is a technology writer and all-around computer geek. Security Discussions Oct 9, 2016 Which firewall of these that everyone recommends? I found a bunch of different guides on how to set up a firewall for an Edgerouter, but I don't really understand the basics and they don't really go into it. navigate to this website

Almost every distro out there has nothing configured by default which means your Linux box is wide open and only protected by whatever hardware firewall you may have in place - However, that worm couldn’t disable your hardware firewall. After all, a firewall does just that - it prevents the "fire" - aka the "payload" - from spreading. (BTW, not all worms/viruses will do this either - just the ones Don’t open any unknown file types, or download programs from pop-ups that appear in your browser.

Image Credit: webhamster on Flickr How Software Firewalls Work A software firewall runs on your computer. For reasons I won't go into here, I'm still using a v6.1 ZA Free, and am wondering which ports might not be adequately covered by it. Please enter your first name and full email address below. The nit picking on ‘vestigial' is clear enough, if irrelevant, but not sure what point the ungramatical first sentence is attempting to make.

I've always taken PC security very seriously and it's ironic that, despite all sensible precautions, I appear to have been specifically targeted by fraudsters who are, from the evidence, extremely organised. secure it, and 2. Basically, the Internet is connected to the BSD gateway machine on NIC card #1. These contingencies are easily allowed for by the GUI.

It can easily be configured to trust specific packets from other devices on the LAN while not completely opening your computer up for all connections. * If you have a portable Why? MapleTip Webmaster 12224 posts Gender:Male Location:Free Market <1> IGN:AimingHigh Posted 05 April 2007 - 06:04 AM Common sense, it's the best one ever. Still one of the next best online port scanners, and fairly well known, is the ShieldsUP!

oldsod Reply With Quote October 15th, 2008 #7 webdaddy Guest Re: Recommend a firewall-tester? Bill7 Level 4 Joined: Mar 8, 2014 Messages: 178 Likes Received: 710 Comodo Firewall or Private Firewall would be a good choice #11 Bill7, Apr 30, 2015 Logethica and Piteko21 Your web browser operates using TCP packets. I guess I can only conclude that, as my card issuer has suggested, my details were obtained by completely different means and not by any neligence on my part.

If your goal is to secure a host on that giant TCP/IP Inter-Network we now call the Internet (formerly it was known as the DARPANET, so-named for the "Defense Advanced Research Solarquest posted Feb 1, 2017 at 10:19 PM Loading... To start viewing messages, select the forum that you want to visit from the selection below. I might add that I don't keep any sensitive financial details on my main hard drive.

What would you suggest my best course of action is? Start by searching "well known ports." After you have a basic ruleset, you can watch your firewall log to see what outbound traffic is still being blocked. I use an operating system and software that didn't cost me a single penny. You get the added benefit that you can run multiple computers off your broadband (cable or DSL) connection.

  1. All TCP "well known services" receive a "SYN" packet to synchronize the two hosts.
  2. If you are new to networks in general looking the Wikipedia page of the OSI model will give you a starting point, just read on and follow the links to know
  3. Dodo1+ years ago#19 Up to and including Windows XP my favourite firewall was Sygate Personal Firewall.
  4. Some of this study material is a very steep [almost vertical] learning curve for beginners and new comers to the Unix universe that existed fully 15 years prior to the founding

Fair endorsement!http://www.kerio.com/us/kpf_home.html If you really are a tyro at firewalls then you could try 1 from Sygate.com as it is more user freindly but is also a larger program but still Early Boot Protection uniquely shields your operating system during start-up, before most security products have even loaded. We like and use Linksys routers. my review here Any online port scanner conducted in a public access point or wireless access point will usually show open ports in their firewall/router.

Initially there are statements of services that are allowed, or disallowed, such as pings and IPv6 traffic. Zonelabs - Zonealarm or Prevx aren't bad and they're free! I use the analogy of a company switchboard that screens all your incoming phone calls…no one can call the boss directly.

Then there are a bunch of statements about how each individual port is configured, including IP addresses and whether DHCP is enabled.

Remember ZoneAlarm? August 19, 2012 LadyFitzgerald The only reason people have trouble with Zone Alarm is because they don't use it properly. Answer: Before we answer your question, here's an important bit of background: in most cases, when you set up your cable or DSL connection to the Internet, your cable or phone name WAN_IN { default-action drop description "WAN to internal Then there are rules to accomplish that strategy and/or make an exception to that strategy, such as: rule 10 { action accept

Mainly it's because they lack the proper tools. This is the default config on most consumer gear that you are likely to encounter. Try it, you'll like it. Thanks folks.

TheSuperGeek Guest MikeV said: ↑ For average users Windows firewall (with a good AV like Eset, Qihoo, Avast etc..) is more than enough. For advanced users Online Armor, Comodo firewall or Private Firewall are the best choices.Click to expand... Berkeley is where TCP/IP was invented! Published 08/19/12 SHOW ARCHIVED READER COMMENTS (32) Comments (32) August 19, 2012 Doug Jensen This is a simplified answer for people unfamiliar with the topic -- as you intended.

However, I use the same simplified explanation when I tell my family and friends why they should buy a router. FreeBSD. I once ran a BSD gateway on a 486-DX33 machine with 128 Megabytes of RAM that we lab tested and proved capable of handling in excess of 10,500 inbound http (TCP) I will not mislead you.

August 19, 2012 Zinc64 I agree with Doug that comparing a home router with NAT to a dedicated network appliance is a bit over-simplified. August 19, 2012 Khalid Good introduction by Chris and pretty good ‘constructive' feedback. I have used a "honey pot" host on my network as a destination for packets identified as "likely to be invasive," along with a software package called "Tripwire" that plays cat Thread Information Users Browsing this Thread There are currently 1 users browsing this thread. (0 members and 1 guests) Posting Permissions You may not post new threads You may not post

