Register and remove the ads

Go Back   Windows Vista Forum | Vista Babble > Windows Vista > Vista Security

Reply
 
LinkBack Thread Tools Display Modes
  #1  
Old 02-06-2007, 08:24 PM
Znod's Avatar
Super Moderator
 
Join Date: Jul 2006
Location: Phoenix AZ
Posts: 3,136
Znod is on a distinguished road
Vista Firewall: Boy do I Agree with Him

Hi Gang:

Hi Friends:

Here is an interesting read on the Vista firewall. As indicated above, I agree a great deal with what the author says. I have tried to configure the firewall to do some very basic things regarding outbound traffic, and, while I understand how it works at a slightly more than basic level, I could not disable everything I needed to get it working the way I want it too (i.e., without changing more things than I wanted given my level of experience with the firewall). For the most part, the instructions found online are a serious waste of time. Yes, they provide nice snips and discussion, but have most of the authors actually tried to configure the firewall with advanced settings? I doubt it.

Here is what I was able to accomplish. I was able to block all outbound without affecting our network negatively. Then, I was able to write "rules" that allowed me to connect with online sites that employ encryption, but I could never find a way to turn the encryption "requirement" off without, as indicated, going farther than comfortable given my level of experience with the firewall.

On the other side the coin, I was able to allow all outbound, but I could never write a rule, which seems like a simple enough thing to do, that would block "Leaktest" from getting through the firewall.

I have to wonder, why the firewall have to be so hard to configure when it comes to basic things. On the other side, maybe I got it right, and it just doesn't work too well. The good news is that Zone Labs ought to have their new free Vista-ready firewall out pretty soon. It is good at dealing with outbound.
__________________
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Sponsored Links
  #2  
Old 02-12-2007, 10:12 PM
ants's Avatar
Member
 
Join Date: Feb 2007
Posts: 59
ants is on a distinguished road

Hiya Znod

Mate I hear your frustrations. I think its a scratch each others back situation as to having to employ an expert to help with security. Microsoft always wins in the end. Its nice to see that they got security conscious but I think they gave the job to a paranoid schizophrenic

Lets take Symantec for instance. internet security 2006 was a dream. Internet security 2007 is a nightmare.

The earlier had an option to scan all folders for programs that had the ability to make an outbound request. The later doesn't. This frustrates me as I don't appreciate knowing that certain applications "Phone Home" without my permission. So I either have to add each application .exe to the firewall personally OR trust that the firewall will ASK my permission to allow a connection.

This is my final thoughts as to why things have changed.

I believe that Nortons/Microsoft/etc. have come to many agreements with many software companies to ALLOW a connection for license purposes. Meaning that "BACKDOORS" have been written inside firewalls for PAYING vendors to take advantage of.

Its a COnSPiRAcY hahahaha

naaaa true it is!
__________________
-
I'm a happy little Vegemite!

Last edited by ants : 02-12-2007 at 10:15 PM.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
  #3  
Old 02-12-2007, 10:28 PM
felix8406's Avatar
Elite Members
 
Join Date: Aug 2006
Location: San Antonio, TX
Posts: 3,301
felix8406 will become famous soon enough

That's an excellent point Ants. For what I have experience, I think that Microsoft will eventually want to build an OS that the only thing a user will be allow to do is some programs. In other words, an OS where the user doesn't know what is taking place behind the scene at all. Current OS's are composed of numerous small applications, all doing more or less what they are designed to do. On future OS, you don't see the applications because it would be more like a contiguous file with few options.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
  #4  
Old 02-12-2007, 10:31 PM
ants's Avatar
Member
 
Join Date: Feb 2007
Posts: 59
ants is on a distinguished road

Quote:
Originally Posted by felix8406
That's an excellent point Ants. For what I have experience, I think that Microsoft will eventually want to build an OS that the only thing a user will be allow to do is some programs. In other words, an OS where the user doesn't know what is taking place behind the scene at all. Current OS's are composed of numerous small applications, all doing more or less what they are designed to do. On future OS, you don't see the applications because it would be more like a contiguous file with few options.

Words from a wise man. I totally and 100% agree with you.

(I think totaly and 100% are the same thing) hehehehe
__________________
-
I'm a happy little Vegemite!
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



Register and remove the ads

All times are GMT +1. The time now is 04:27 PM.



Page generated in 0.29950 seconds with 12 queries

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23