Unoffical empeg BBS

Quick Links: Empeg FAQ | RioCar.Org | Hijack | BigDisk Builder | jEmplode | emphatic
Repairs: Repairs

Topic Options
#258189 - 14/06/2005 13:41 Personal Firewall
Taym
carpal tunnel

Registered: 18/06/2001
Posts: 2504
Loc: Roma, Italy
Speaking of personal firewall, I've long been looking for a replacement for Kerio Personal Firewall. I dont' have too much time to test all packages out there, and hopefully someone here has some experience to share. All I need is this

- Runs on Windows XP / Windows Server 2003
- Application based: I want to be able to decide which .EXE file is supposed to access the internet and from the internet.
- For each application, I want to be able to decide Port, Protocol, direction
- Possibly, I'd like to be able to have different rules for each ethernet adaper.

This is basically what Kerio does. Recent versions are very heavy, I have to say. Does anybody uses anything different that they like?

Thanks in advance
_________________________
= Taym =
MK2a #040103216 * 100Gb *All/Colors* Radio * 3.0a11 * Hijack = taympeg

Top
#258190 - 14/06/2005 14:11 Re: Personal Firewall [Re: Taym]
visuvius
addict

Registered: 18/02/2002
Posts: 658
Well, I don't know about your 3rd and 4th requirements, but I've been using Zone Alarm for about 3 years now and it works great.

Top
#258191 - 14/06/2005 14:35 Re: Personal Firewall [Re: visuvius]
eliceo
enthusiast

Registered: 18/02/2002
Posts: 335
Quote:
Well, I don't know about your 3rd and 4th requirements, but I've been using Zone Alarm for about 3 years now and it works great.
Ive been using zone alarm too, it basically works and I don't have many complaints. It always wants to update itself which sometimes forces you to reset some rules.

Top
#258192 - 14/06/2005 14:38 Re: Personal Firewall [Re: Taym]
tman
carpal tunnel

Registered: 24/12/2001
Posts: 5528
I'm pretty sure the built in XP one actually does most of what you want. I used to use Zone Alarm but stopped a few years ago because there was some bug where it would suddenly just disconnect everything and only a reboot would fix it. I just use the built in XP one but have a proper firewall on my gateway.

Top
#258193 - 14/06/2005 14:45 Re: Personal Firewall [Re: Taym]
petteri
addict

Registered: 02/08/2004
Posts: 434
Loc: Helsinki, Finland
I have been using F-Secure Internet Security for a couple of years now with no problems. It can do 1 to 3 on your list but I'm not sure about #4.

http://www.f-secure.com

Top
#258194 - 14/06/2005 14:54 Re: Personal Firewall [Re: tman]
Taym
carpal tunnel

Registered: 18/06/2001
Posts: 2504
Loc: Roma, Italy
tman, the only problem with WIndows Firewall is that it does not detect/block OUTGOING connections. Other than that I find it actually quite good. But that is a major security issue if you want to detect trojans or anyway just keep an eye on whatever wants to connect out from your machine.

I'll give a try to f-secure.

Edit: potteri, it seems that F-Secure Internet Security does not run on Windows Server 2003. The Server solution they have looks far more complex and heaviu than what I need, and, mostly, they don't have a trial to let me see what it actually does (in the hope I can only install the firewall).


Edited by taym (14/06/2005 15:16)
_________________________
= Taym =
MK2a #040103216 * 100Gb *All/Colors* Radio * 3.0a11 * Hijack = taympeg

Top
#258195 - 14/06/2005 15:08 Re: Personal Firewall [Re: Taym]
tman
carpal tunnel

Registered: 24/12/2001
Posts: 5528
Quote:
tman, the only problem with WIndows Firewall is that it does not detect/block OUTGOING connections. Other than that I find it actually quite good. But that is a major security issue if you want to detect trojans or anyway just keep an eye on whatever wants to connect out from your machine.

Hmm. Thought it did do that but on closer inspection it appears not. Zone Alarm Pro is pretty good. They couldn't work out why I kept hitting that problem however but it was only on one of my computers so I guess it was something config specific.

Top
#258196 - 14/06/2005 15:21 Re: Personal Firewall [Re: tman]
Taym
carpal tunnel

Registered: 18/06/2001
Posts: 2504
Loc: Roma, Italy
Now that I look into it, I noticed that Widnows Firewall allows me to chose an application OR a port, but not both at the same time. In other words, if I let an application out, I can only limit the IP scope on it, but not the ports on it. Alternatively, I can open up a port, limit it to a IP scope, but not to a specific application.
_________________________
= Taym =
MK2a #040103216 * 100Gb *All/Colors* Radio * 3.0a11 * Hijack = taympeg

Top
#258197 - 14/06/2005 15:32 Re: Personal Firewall [Re: Taym]
petteri
addict

Registered: 02/08/2004
Posts: 434
Loc: Helsinki, Finland
Sorry, I didn't notice the lack of support for Windows Server 2003. I don't know anything about the rest of the products that they offer...

Top
#258198 - 14/06/2005 16:53 Re: Personal Firewall [Re: Taym]
Chuck
member

Registered: 06/06/2001
Posts: 183
I've been using Outpost Firewall Pro for quite awhile with great results. You can control each application/protocol/port/direction, but I'm not sure about rules for an ethernet controller. Maybe their Office version has that feature...

Top
#258199 - 14/06/2005 20:03 Re: Personal Firewall [Re: Taym]
Tim
veteran

Registered: 25/04/2000
Posts: 1522
Loc: Arizona
I use Zone Alarm Pro, and it satisfies almost all of your requirements. The only one that I am not sure about is specifying the direction of the transfer in requirement three. You can definately open up ports and protocols though.

- Tim

Top
#258200 - 14/06/2005 20:30 Re: Personal Firewall [Re: Chuck]
Taym
carpal tunnel

Registered: 18/06/2001
Posts: 2504
Loc: Roma, Italy
Guys , I found out that Outpost is really good, feature-wise. By far the best fw I've personally tried so far. Thank you Chuck. I am almost convinced to purchase it!
_________________________
= Taym =
MK2a #040103216 * 100Gb *All/Colors* Radio * 3.0a11 * Hijack = taympeg

Top
#258201 - 17/06/2005 12:27 Re: Personal Firewall [Re: Taym]
muzza
Pooh-Bah

Registered: 21/07/1999
Posts: 1765
Loc: Brisbane, Queensland, Australi...
I'm using Sygate Personal Firewall on a 2k3 server at the moment. You can apply exception rules per interface/protocol/direction/schedule/application. Quite comprehensive. Here's the rul summary it does:
Quote:
Rule Summary:
This rule will allow incoming traffic from IP address(es) 192.168.0.129 on TCP remote port(s) 389 to TCP local port(s) 389.
This rule will be applied to Realtek RTL8139 Family PCI Fast Ethernet NIC.
The rule will take effect beginning on the 18th of July at 12:15PM and last for 1 day, 1 hour and 3 minutes.
This traffic will be recorded in the 'Packet Log'.
The following applications will be affected in this rule: TCP/IP Services Application,SNMP Service,Domain Name System (DNS) Server.


It also keeps Security, Traffic, Packet and System logs. Occationally i'll see a report about some port scanning which was thwarted. I had some probs with zone alarm on XP, there was an issue with an update and stuff stopped working.
Sygate hasn't been a problem
_________________________
-- Murray I What part of 'no' don't you understand? Is it the 'N', or the 'Zero'?

Top
#258202 - 18/06/2005 16:53 Re: Personal Firewall [Re: muzza]
Taym
carpal tunnel

Registered: 18/06/2001
Posts: 2504
Loc: Roma, Italy
Thanks Muzza. I'll give it a try since Outpost has been driving me crazy for the last two days, since it was not letting IE out in spite of the fact that it was a trusted application. It could very well be my fault, but the fact that Sygate also offers a per-ethernect-card cfg is a winning point for me.
_________________________
= Taym =
MK2a #040103216 * 100Gb *All/Colors* Radio * 3.0a11 * Hijack = taympeg

Top