Is software firewall nessasery if hardware is available?

L

Leythos

HI! When you say IIS lockdown does this mean firewall protection?

Go to the MS web site and search for "IIS LOCKDOWN", it's a tool/method
used to secure IIS, has nothing to do with firewalls.
Is Microsoft ISA an OS Server platform with firewall protection or is a
add-on to an OS such as My WinXP pro or Server?

ISA is a firewall that runs on a Server, I do not think it will run on
Windows XP Home or Prof - there is no Windows XP Server version.
 
P

paul dallaire

HI! ok good I will do that. and thanks again for all the information that
you have given me :)
 
P

paul dallaire

HI! again one last one. what I am looking for as far as good router.

What should it have at least as far as specs. (Without all the bells and
whisles and mean.)

I was looking online at a store in my city and found one around 400$
canadian.
10/100 8-Port VPN Router RV082 Linksys ( A Division of Sysco Systems)

Security Features: SPI Firewall, DES and 3DES Encryption for IPSec VPN
Tunnel.

Is this sufficient.?
 
G

Guest

For home use, look on eBay for a Netscreen-5, Watchguard SOHO, or a
SonicWall and it you run you about $400.

I forgot you were running XP. Try XP SP2 and it's firewall.

paul dallaire said:
HI! again one last one. what I am looking for as far as good router.

What should it have at least as far as specs. (Without all the bells and
whisles and mean.)

I was looking online at a store in my city and found one around 400$
canadian.
10/100 8-Port VPN Router RV082 Linksys ( A Division of Sysco Systems)

Security Features: SPI Firewall, DES and 3DES Encryption for IPSec VPN
Tunnel.

Is this sufficient.?
 
L

Leythos

HI! again one last one. what I am looking for as far as good router.

What should it have at least as far as specs. (Without all the bells and
whisles and mean.)

I was looking online at a store in my city and found one around 400$
canadian.
10/100 8-Port VPN Router RV082 Linksys ( A Division of Sysco Systems)

Security Features: SPI Firewall, DES and 3DES Encryption for IPSec VPN
Tunnel.

Is this sufficient.?

Here's the deal, since you are not running a real web server, since it's
only a workstation that can only support 10 connections, and since you
have a couple other PC's you want to protect from the web workstation in
case it gets compromised, get yourself two generic NAT ROUTERS and just
just those. Most of the routers under $100 each come with SPI. Since you
don't need a router that does IPSec tunnels you don't need to pay for that
feature - your 604 or the Linksys BEFSR41 units are cheap, provide NAT,
and do enough.

The VPN Router you mention doesn't have any protective measures that the
604/BEFSR41 units don't have. Since they are not firewall's you really
don't have many options that you can work with.

Just use the two routers in series with the DMZ off the first and the LAN
off the second.
 
P

paul dallaire

HI! Thanks allot for all the advice I will do the mentioned setup.

Thanks again :)

Paul Dallaire


paul dallaire said:
HI! again one last one. what I am looking for as far as good router.

What should it have at least as far as specs. (Without all the bells and
whisles and mean.)

I was looking online at a store in my city and found one around 400$
canadian.
10/100 8-Port VPN Router RV082 Linksys ( A Division of Sysco Systems)

Security Features: SPI Firewall, DES and 3DES Encryption for IPSec VPN
Tunnel.

Is this sufficient.?
 
B

Bruce Chambers

paul said:
HI! I have being having allot of trouble getting the personal firewall of
(Norton Internet Security) to work with IIS server.

with the PF turned off all is ok. its fine through my router and with my
shared DLS connection but once its on both IE and my FTP client just
timesout.

I have d-link router with a built in firewall. is this good enough? I am
just going through all this for an overkill?

I have the virus scanner/adware scanner/spyware scanner/ and all is fine
right now.

what do you guys think?


If you use a router with NAT, it's still a very good idea to use a
3rd party software firewall. Like WinXP's built-in firewall,
NAT-capable routers do nothing to protect the user from him/herself (or
any "curious," over-confident teenagers in the home). Again -- and I
*cannot* emphasize this enough -- almost all spyware and many Trojans
and worms are downloaded and installed deliberately (albeit unknowingly)
by the user. So a software firewall, such as Sygate or ZoneAlarm, that
can detect and warn the user of unauthorized out-going traffic is an
important element of protecting one's privacy and security. (Remember:
Most antivirus applications do not even scan for or protect you from
adware/spyware, because, after all, you've installed them yourself, so
you must want them there, right?)

I use both a router with NAT and Sygate Personal Firewall, even
though I generally know better than to install scumware. When it comes
to computer security and protecting my privacy, I prefer the old "belt
and suspenders" approach. In the professional IT community, this is
also known as a "layered defense." Basically, it comes down to never,
ever "putting all of your eggs in one basket."


--

Bruce Chambers

Help us help you:



You can have peace. Or you can have freedom. Don't ever count on having
both at once. - RAH
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top