Re: Questions from a newbie
Available news archives: comp.lang.tcl - comp.lang.python - comp.security.firewalls - sci.crypt - comp.lang.php - comp.lang.javascript
Google
 
Web news.hping.org


comp.security.firewalls archive

Re: Questions from a newbie

From: Prickle <prick@somewherecom>
Date: Sat Dec 31 2005 - 22:15:11 CET

"MJFD.Sr" <buckeyeharley@fuse.net> wrote in message =
news:1136060457.304683.286990@g14g2000cwa.googlegroups.com...
> The Pre-N does provide NAT and stateful packet inspection, which is =
the
> basic functionality required from any standalone firewall. I haven't
> seen the configuration of the Pre-N, but that will be where you tweak
> WPA encryption and firewall policy. If it will allow you to (in the
> config), deny access to ports or services that you do not need. If
> not, it might have a "low, medium, and high" security settings
> option....select medium or high.

A) I will set up WPA encryption asap - I believe XP SP2 which I use on =
my pc and laptop will allow WPA=20

B) It appears that all ports are 'stealthed' by default... see Quote =
below

................................................................

Virtual Servers

This function will allow you to route external (Internet) calls for =
services such as a web server (port 80), FTP server (Port 21), or other =
applications through your Router to your internal network. Since your =
internal computers are protected by a firewall, machines from the =
Internet cannot get to them because they cannot be 'seen'. If you need =
to configure the Virtual Server function for a specific application, a =
list of common applications has been provided. If your application is =
not listed, you will need to contact the application vendor to find out =
which port settings you need. To select from the provided list, select =
your application from the drop-down list. Select the row that you want =
to copy the settings to from the drop-down list next to "to row", then =
click "Enter". The settings will be transferred to the row you =
specified. Click "Apply Changes" to save the setting for that =
application. To manually enter settings, enter the IP address in the =
space provided for the internal (server) machine, the port(s) required =
to pass (use a comma between multiple ports), select the port type (TCP =
or UDP) and click "Apply Changes". You can only pass one port per =
internal IP address. Opening ports in your firewall can pose a security =
risk. You can enable and disable settings very quickly. It is =
recommended that you disable the settings when you are not using a =
specific application.=20

.........................................................................=
............
> Belkin is known for connectivity, though, not security. I would still
> recommend a good desktop anti-virus, commercial (WebRoot) or free
> spyware sweeper (SpyBot, Ad-Aware), and a desktop firewall (ZoneAlarm,
> Symantec/Sygate). All of these are still based on signatures, but the
> really good protocol anomaly and behavior-based host intrusion
> prevention stuff (Sana Security, etc). isn't ready for home users yet.
>
I have AdAware but have ditched Norton Internet Security (it was causing =
problems with email and also slowing computer to an unacceptable degree) =
I have heard good reports about NOD32 and may download a trial version

Thanks for your help

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; =
charset=3Diso-8859-1">
<META content=3D"MSHTML 6.00.2900.2802" name=3DGENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>"MJFD.Sr" &lt;</FONT><A=20
href=3D"mailto:buckeyeharley@fuse.net"><FONT face=3DArial=20
size=3D2>buckeyeharley@fuse.net</FONT></A><FONT face=3DArial =
size=3D2>&gt; wrote in=20
message </FONT><A=20
href=3D"news:1136060457.304683.286990@g14g2000cwa.googlegroups.com"><FONT=
=20
face=3DArial=20
size=3D2>news:1136060457.304683.286990@g14g2000cwa.googlegroups.com</FONT=
></A><FONT=20
face=3DArial size=3D2>...</FONT></DIV>
<DIV><FONT face=3DArial size=3D2>&gt; The Pre-N does provide NAT and =
stateful packet=20
inspection, which is the<BR>&gt; basic functionality required from any=20
standalone firewall.&nbsp; I haven't<BR>&gt; seen the configuration of =
the=20
Pre-N, but that will be where you tweak<BR>&gt; WPA encryption and =
firewall=20
policy.&nbsp; If it will allow you to (in the<BR>&gt; config), deny =
access to=20
ports or services that you do not need.&nbsp; If<BR>&gt; not, it might =
have a=20
"low, medium, and high" security settings<BR>&gt; option....select =
medium or=20
high.</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV>
<P><FONT face=3DArial color=3D#0000ff size=3D2><EM>A) I will set up WPA =
encryption=20
asap - I believe XP SP2 which I use on my pc and laptop will allow WPA=20
</EM></FONT></P>
<P><FONT face=3DArial color=3D#0000ff size=3D2><EM>B) It appears that =
all ports are=20
'stealthed' by default... see Quote below</EM></FONT></P>
<P><FONT face=3DArial color=3D#0000ff=20
size=3D2><EM>............................................................=
....</EM></FONT></P>
<P><FONT face=3DArial color=3D#0000ff size=3D2><EM>Virtual =
Servers</EM></FONT></P>
<P><FONT face=3DArial color=3D#0000ff size=3D2><EM>This function will =
allow you to=20
route external (Internet) calls for services such as a web server (port =
80), FTP=20
server (Port 21), or other applications through your Router to your =
internal=20
network. Since your internal computers are protected by a firewall, =
machines=20
from the Internet cannot get to them because they cannot be 'seen'. If =
you need=20
to configure the Virtual Server function for a specific application, a =
list of=20
common applications has been provided. If your application is not =
listed, you=20
will need to contact the application vendor to find out which port =
settings you=20
need. To select from the provided list, select your application from the =

drop-down list. Select the row that you want to copy the settings to =
from the=20
drop-down list next to "to row", then click "Enter". The settings will =
be=20
transferred to the row you specified. Click "Apply Changes" to save the =
setting=20
for that application. To manually enter settings, enter the IP address =
in the=20
space provided for the internal (server) machine, the port(s) required =
to pass=20
(use a comma between multiple ports), select the port type (TCP or UDP) =
and=20
click "Apply Changes". You can only pass one port per internal IP =
address.=20
Opening ports in your firewall can pose a security risk. You can enable =
and=20
disable settings very quickly. It is recommended that you disable the =
settings=20
when you are not using a specific application. </EM></FONT></P></DIV>
<DIV><FONT face=3DArial size=3D2><EM><FONT=20
color=3D#0000ff>.........................................................=
............................</FONT><BR></EM>&gt;=20
Belkin is known for connectivity, though, not security.&nbsp; I would=20
still<BR>&gt; recommend a good desktop anti-virus, commercial (WebRoot) =
or=20
free<BR>&gt; spyware sweeper (SpyBot, Ad-Aware), and a desktop firewall=20
(ZoneAlarm,<BR>&gt; Symantec/Sygate).&nbsp; All of these are still based =
on=20
signatures, but the<BR>&gt; really good protocol anomaly and =
behavior-based host=20
intrusion<BR>&gt; prevention stuff (Sana Security, etc). isn't ready for =
home=20
users yet.<BR>&gt;</FONT></DIV>
<DIV>
<P><FONT face=3DArial color=3D#0000ff size=3D2><EM>I have AdAware but =
have ditched=20
Norton Internet Security (it was causing problems with email and also =
slowing=20
computer to an unacceptable degree) I have heard good reports about =
NOD32 and=20
may download a trial version</EM></FONT></P>
<P><FONT face=3DArial color=3D#0000ff size=3D2><EM>Thanks for your=20
help</EM></FONT></P></DIV></BODY></HTML>
Received on Tue Jan 3 03:40:27 2006