Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Question About Firewalls
ME

Posted on 01/27/2004 7:46:49 PM PST by maui_hawaii

I would like to learn more about firewalls. I would appreciate any input that knowledgeable freepers can contribute.

First off I am using theWindows XP Firewall.

It says in that link that the firewall blocks all incoming "packets".

First off what is a "packet" and what does it do?

I have checked here but I don't quite get all the lingo yet.

One thing it says in there is:

Before installing personal firewall software on a Windows XP computer, be sure that the firewall built into Windows XP is turned off. Never use two software firewalls at the same time.

Why not run two with each other (namely the XP firewall and say Zone Alarm)?

I have tried Zone Alarm as well as Zone Alarm Pro. It seems all either did was log which programs were accessing the internet. Then again I don't know the first thing about how firewalls work.

If the built in XP firewall blocks incoming "requests" for information (I am assuming this is what a "packet" is) wouldn't that be ok? Whats the danger in leaving it 'as is'?

In the built in XP firewall it has an option to 'log dropped packets'. What does that mean?

Anyway as you can tell, I am curious about how things work and/or how to utilize a tool like a firewall.

Before I fork out the dough, I want to know what I am getting and how to use it.


TOPICS: Computers/Internet
KEYWORDS: techindex

1 posted on 01/27/2004 7:46:49 PM PST by maui_hawaii
[ Post Reply | Private Reply | View Replies]

To: All
Also what is a ICMP, FTP server, Protocol, and any other lingo that might be helpful.
2 posted on 01/27/2004 7:49:43 PM PST by maui_hawaii
[ Post Reply | Private Reply | To 1 | View Replies]

To: Prime Choice
pinging experts

You know anyone else that would contribute to this thread?

3 posted on 01/27/2004 7:53:28 PM PST by maui_hawaii
[ Post Reply | Private Reply | To 2 | View Replies]

To: Golden Eagle; sam_paine; big ern; unix; rdb3; Nick Danger; Bush2000; TheEngineer
ping
4 posted on 01/27/2004 7:57:38 PM PST by maui_hawaii
[ Post Reply | Private Reply | To 3 | View Replies]

To: maui_hawaii; *tech_index
How Firewalls work
5 posted on 01/27/2004 8:05:09 PM PST by martin_fierro (Please direct all Quality Control complaints to Tijeras_Slim)
[ Post Reply | Private Reply | To 1 | View Replies]

To: martin_fierro
Awesome link!

Thanks!

6 posted on 01/27/2004 8:34:25 PM PST by maui_hawaii (DELL's customer service SUCKS!)
[ Post Reply | Private Reply | To 5 | View Replies]

To: maui_hawaii
I don't know crap about that stuff other than a firewall is supposed to keep others out of your stuff and FTP is supposed to be program that is easy to set up websites with but I'm too stupid to operate it.
7 posted on 01/27/2004 10:25:11 PM PST by TheErnFormerlyKnownAsBig (I like it so shaddup./sarcasm Heaven's just a sin away, oh heaven's just a sin away.)
[ Post Reply | Private Reply | To 4 | View Replies]

To: maui_hawaii
A "packet" is a glob of data, typically a few hundred or a thousand bytes of data.

Pretty much all data that is sent over the internet (such as the web page you are reading this reply on) is broken up into separate chunks of a thousand or so bytes. Each chunk, or packet, is sent separately, with a header saying where it is going, and a sequence number. The receiving computer glues the packets back together in order, and sends out requests for copies if a piece is missing.

A firewall watches these low level packets coming and going to your computer, and refuses to let some of them pass (typically, just discards them).

The most basic firewall will let your computer send out any packet, but will only let packets back in that are recognized as replies to something you just sent out.

Zone Alarm goes a bit further, and tracks which applications on your computer are sending what kinds of packets. You can allow your web browser to send requests to web servers (http://... places), but keep some randomly hacked virus infected application from connecting out.

Fancier firewalls will have a lengthy list of rules, saying who can send or receive what from whom when. A place like Amazon, Yahoo or FreeRepublic requires such fancier firewalls. Well, actually many places require such. Pretty much anytime you start providing some service on your computer that others can access from across the internet, you need to get much more serious about firewalls.

8 posted on 01/27/2004 10:29:25 PM PST by ThePythonicCow (Mooo !!!!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: maui_hawaii
'log dropped packets'

This keeps a list of what packets it discarded (filtered out), so you can see what was kept out.

This is just to help you see what is going on.

9 posted on 01/27/2004 10:31:37 PM PST by ThePythonicCow (Mooo !!!!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: maui_hawaii
Instead of Zone Alarm Pro, I prefer using a hardware firewall

You connect it between your cable (or DSL) modem and your PC:

See for example the D-Link Express EtherNetwork 4-Port Ethernet Broadband Router, Model DI-604.

They are easier to use, provide a more robust firewall (quite a bit harder to crack) and once installed, can operate pretty much without any consideration for years, regardless of changing and confused settings in your PC.

Zone Alarm tends to go out of its way with the free version to scare you, with various alerts about outgoing packets that are not usually any problem. This encourages you to buy their Pro version.

10 posted on 01/27/2004 10:41:45 PM PST by ThePythonicCow (Mooo !!!!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ThePythonicCow
what about a linksys wireless router?
11 posted on 01/27/2004 11:02:42 PM PST by maui_hawaii (DELL's customer service SUCKS!)
[ Post Reply | Private Reply | To 10 | View Replies]

To: ThePythonicCow
I have a linksys wireless router but when I get into the settings page I don't know what all the bells and whistles are. Much less how to use them.

I did set it up where my network is encrypted and is not able to be seen by others....

12 posted on 01/27/2004 11:12:25 PM PST by maui_hawaii (DELL's customer service SUCKS!)
[ Post Reply | Private Reply | To 10 | View Replies]

To: maui_hawaii
I have the Linksys Wireless Router but have not done any special setup with it. I also have Norton stuff!

Thread over here about Spyware which is another damnable problem that a firewall doesn't help with:

Help Yall,I got a worm i cant get rid of (Cpu Assistance Vanity)

13 posted on 01/28/2004 12:03:46 AM PST by Ernest_at_the_Beach (The terrorists and their supporters declared war on the United States - and war is what they got!!!!)
[ Post Reply | Private Reply | To 12 | View Replies]

To: maui_hawaii
Linksys, Netgear, Belkin, Hawking and D-Link - they are all pretty good. Though they can all frustrate, depending on what you're trying to do, what you know, and their various strengths and weaknesses.

Some more good guides:


14 posted on 01/28/2004 12:17:17 AM PST by ThePythonicCow (Mooo !!!!)
[ Post Reply | Private Reply | To 12 | View Replies]

To: ThePythonicCow
As I was looking at your first link, the PC Mag report, Norton Firewall blocked something from PC Magazine putting a cookie on my system.
15 posted on 01/28/2004 12:49:24 AM PST by Ernest_at_the_Beach (The terrorists and their supporters declared war on the United States - and war is what they got!!!!)
[ Post Reply | Private Reply | To 14 | View Replies]

To: maui_hawaii; ThePythonicCow
Nite all!
16 posted on 01/28/2004 12:50:19 AM PST by Ernest_at_the_Beach (The terrorists and their supporters declared war on the United States - and war is what they got!!!!)
[ Post Reply | Private Reply | To 12 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson