corsasport.co.uk
 

Corsa Sport » Message Board » Off Day » Geek Day » Windows Firewall - is it enough?


New Topic

New Poll
  <<  1    2    3  >> Subscribe | Add to Favourites

You are not logged in and may not post or reply to messages. Please log in or create a new account or mail us about fixing an existing one - register@corsasport.co.uk

There are also many more features available when you are logged in such as private messages, buddy list, location services, post search and more.


Author Windows Firewall - is it enough?
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
9th Sep 08 at 15:51   View Garage View User's Profile U2U Member Reply With Quote

quote:
Originally posted by John
My computer doen't autorun anything, pictures are pictures(although there are ways coming out to infect jpegs) wouldn't accept any exe that wasn't trusted on msn, emails go via gmail.

Internet explorer has about a million things to stop you going to suspect sites.

Opera tells you the site is suspect and you have to agree to go to it.

Google comes up telling you something is suspect and you have to agree.


Seriously John you come across as someone who should be clued up, if you think you are at no risk for avoiding dodgy sites and so on like you said earlier then you are slightly misguided. The IT security sector is as big as it is cause people are fucking clever at fooling at you and finding vulns in software which you didn't think was possible.
deano87
Member

Registered: 21st Oct 06
Location: Bedfordshire Drives: Ford Fiesta
User status: Offline
9th Sep 08 at 15:51   View User's Profile U2U Member Reply With Quote

All IP's (my computer, dad's computer, sisters laptop, Dell printer, router itself) begin with 192.168, so this is a good thing?
John
Member

Registered: 30th Jun 03
User status: Offline
9th Sep 08 at 15:53   View User's Profile U2U Member Reply With Quote

I'm half arguing for the sake of it and half believe what I say.

I know most people can't help it but a bit of common sense can go a long way.
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
9th Sep 08 at 15:53   View Garage View User's Profile U2U Member Reply With Quote

means they are private addressing, so you are more then likely behind a router doing NAT, which is providing you guys addressing by DHCP. Dont read into it too much
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
9th Sep 08 at 15:55   View Garage View User's Profile U2U Member Reply With Quote

quote:
Originally posted by John
I'm half arguing for the sake of it and half believe what I say.

I know most people can't help it but a bit of common sense can go a long way.


Yes and in most cases you are right when it comes to arguments mate but really, theres so much nasty shit propagating the Internet you need to see the bigger picture and realise that unless your PC has no network connection, no usb ports, no com port, no infrared, no firewire, no means of accessing another node/external media then you need AV.
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
9th Sep 08 at 15:58   View Garage View User's Profile U2U Member Reply With Quote

scare mongering for the win

http://www.realtechnews.com/posts/1511
http://www.securitystats.com/virusstats.html
http://www.f-secure.com/virus-info/statistics/

John
Member

Registered: 30th Jun 03
User status: Offline
9th Sep 08 at 16:03   View User's Profile U2U Member Reply With Quote

The first 2 sites are 2005 and before.

I remember the days when a new, unpatched, install of xp connected to the net was compromised in they 12 minutes
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
9th Sep 08 at 16:07   View Garage View User's Profile U2U Member Reply With Quote

recent: http://isc.sans.org/diary.html?storyid=4721

And Sans are the lads to be listening to btw
John
Member

Registered: 30th Jun 03
User status: Offline
9th Sep 08 at 16:09   View User's Profile U2U Member Reply With Quote

I've got a laptop thats due to be formatted.

Do you want me to install xp on it and stick it as DMZ on my router and see what happens to it?
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
9th Sep 08 at 16:14   View Garage View User's Profile U2U Member Reply With Quote

It will get mullerd, though that depends if your ISP Entanet filters ports such as 135/tcp/udp and 445/tcp/udp which alot are now doing on the border routers to stop that happening

How are you going to determine that its infected etc?
John
Member

Registered: 30th Jun 03
User status: Offline
9th Sep 08 at 16:16   View User's Profile U2U Member Reply With Quote

Entanet reseller

Not sure, didn't think that far ahead, just curious as to if it would happen or not.

Could monitor for any file changes I suppose.

Could install a packet sniffer and see whats coming in and out of it?
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
9th Sep 08 at 16:19   View Garage View User's Profile U2U Member Reply With Quote

hows the DMZ setup? is the actual PC going to have the public ip address or is it going to be private and the router is just going to forwad any unsolicited traffic to it?

just becareful cause you could risk it getting infected then scanning the local subnet to infect you etc if you arent protected.

Yeah running a wireshark session would be cool!
John
Member

Registered: 30th Jun 03
User status: Offline
9th Sep 08 at 16:21   View User's Profile U2U Member Reply With Quote

I'd just set the router to forward anything to it.

I've got 8 ip addresses but never bothered to set them up, nat does the job fine.

We'd see how my confidence stacked up if that happened
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
9th Sep 08 at 16:26   View Garage View User's Profile U2U Member Reply With Quote

does your router have any firewall logs? cause if your internet connection is filtered by your upstream then nothing fun will happen
John
Member

Registered: 30th Jun 03
User status: Offline
9th Sep 08 at 16:37   View User's Profile U2U Member Reply With Quote

Doesn't look like it, it's a bog standard isp supplied netgear, my last one started being a bit flakey.

Firewall totally turned off though.
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
9th Sep 08 at 16:42   View Garage View User's Profile U2U Member Reply With Quote

hmm!

Well we will soon find out if 135 is filtered or not
Joe
Member

Registered: 20th Jun 04
Location: Hesketh Bank, Lancashire
User status: Offline
9th Sep 08 at 16:52   View User's Profile U2U Member Reply With Quote

Wow, Mega geek thread
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
9th Sep 08 at 16:56   View Garage View User's Profile U2U Member Reply With Quote

internets
ed
Member

Registered: 10th Sep 03
User status: Offline
10th Sep 08 at 09:02   View User's Profile U2U Member Reply With Quote

If you've managed to get a virus on your computer then you'll need anti virus software. I don't use one because I came to the conclusion that it's been sitting on my PC for years, and never done anything so I un-installed it so I could free up some memory and processor power.
pow
Premium Member

Avatar

Registered: 11th Sep 06
Location: Hazlemere, Buckinghamshire
User status: Offline
10th Sep 08 at 20:08   View Garage View User's Profile U2U Member Reply With Quote

From my experiance and what I've been told, your quite safe running a router firewall and the up to date Windows XP firewall.

But lol'ing at people having common sence stopping them from getting a virus/
John
Member

Registered: 30th Jun 03
User status: Offline
19th Sep 08 at 15:03   View User's Profile U2U Member Reply With Quote

Doing this right now, currently installing xp, updates to follow.
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
19th Sep 08 at 15:14   View Garage View User's Profile U2U Member Reply With Quote

SP1 or 2 blud?
John
Member

Registered: 30th Jun 03
User status: Offline
19th Sep 08 at 15:19   View User's Profile U2U Member Reply With Quote

sp2 straight from msdn, i've not got an sp1 lying about or I would.
willay
Moderator
Organiser: South East, National Events
Premium Member


Avatar

Registered: 10th Nov 02
Location: Roydon, Essex
User status: Offline
19th Sep 08 at 15:39   View Garage View User's Profile U2U Member Reply With Quote

KTHXBAI
John
Member

Registered: 30th Jun 03
User status: Offline
19th Sep 08 at 15:41   View User's Profile U2U Member Reply With Quote

Windows installed, wireless drivers installed, just getting wireshark then we'll be off.

  <<  1    2    3  >>
New Topic

New Poll

  Related Threads Author Forum Replies Views Last Post
norton security 2005 GIBBS General Chat 3 340
6th May 05 at 13:52
by James_DT
 
firewalls Pop General Chat 3 843
9th Jun 05 at 19:49
by sassyminx
 
what free firewall Greg_M Geek Day 13 1103
22nd Feb 06 at 17:56
by Cavey
 
PC Upgrade Time - Spec Suggestions Please! Rich H Geek Day 20 842
9th Nov 06 at 20:24
by Russ
 

Corsa Sport » Message Board » Off Day » Geek Day » Windows Firewall - is it enough? 28 database queries in 0.2441590 seconds