Free Republic
Browse · Search
General/Chat
Topics · Post Article


1 posted on 01/27/2004 7:46:49 PM PST by maui_hawaii
[ Post Reply | Private Reply | View Replies ]


To: All
Also what is a ICMP, FTP server, Protocol, and any other lingo that might be helpful.
2 posted on 01/27/2004 7:49:43 PM PST by maui_hawaii
[ Post Reply | Private Reply | To 1 | View Replies ]

To: maui_hawaii; *tech_index
How Firewalls work
5 posted on 01/27/2004 8:05:09 PM PST by martin_fierro (Please direct all Quality Control complaints to Tijeras_Slim)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: maui_hawaii
A "packet" is a glob of data, typically a few hundred or a thousand bytes of data.

Pretty much all data that is sent over the internet (such as the web page you are reading this reply on) is broken up into separate chunks of a thousand or so bytes. Each chunk, or packet, is sent separately, with a header saying where it is going, and a sequence number. The receiving computer glues the packets back together in order, and sends out requests for copies if a piece is missing.

A firewall watches these low level packets coming and going to your computer, and refuses to let some of them pass (typically, just discards them).

The most basic firewall will let your computer send out any packet, but will only let packets back in that are recognized as replies to something you just sent out.

Zone Alarm goes a bit further, and tracks which applications on your computer are sending what kinds of packets. You can allow your web browser to send requests to web servers (http://... places), but keep some randomly hacked virus infected application from connecting out.

Fancier firewalls will have a lengthy list of rules, saying who can send or receive what from whom when. A place like Amazon, Yahoo or FreeRepublic requires such fancier firewalls. Well, actually many places require such. Pretty much anytime you start providing some service on your computer that others can access from across the internet, you need to get much more serious about firewalls.

8 posted on 01/27/2004 10:29:25 PM PST by ThePythonicCow (Mooo !!!!)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: maui_hawaii
'log dropped packets'

This keeps a list of what packets it discarded (filtered out), so you can see what was kept out.

This is just to help you see what is going on.

9 posted on 01/27/2004 10:31:37 PM PST by ThePythonicCow (Mooo !!!!)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: maui_hawaii
Instead of Zone Alarm Pro, I prefer using a hardware firewall

You connect it between your cable (or DSL) modem and your PC:

See for example the D-Link Express EtherNetwork 4-Port Ethernet Broadband Router, Model DI-604.

They are easier to use, provide a more robust firewall (quite a bit harder to crack) and once installed, can operate pretty much without any consideration for years, regardless of changing and confused settings in your PC.

Zone Alarm tends to go out of its way with the free version to scare you, with various alerts about outgoing packets that are not usually any problem. This encourages you to buy their Pro version.

10 posted on 01/27/2004 10:41:45 PM PST by ThePythonicCow (Mooo !!!!)
[ Post Reply | Private Reply | To 1 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson