Go Back   PCMech Forums > Help & Discussion > Networking & Online Security

Need Some Help? Type Your Keywords Here:

Reply
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
Old 09-21-2003, 04:39 PM   #1
Banned
 
Join Date: Oct 2002
Posts: 60
Send a message via AIM to Ymets2k
Hardware firewalls

Is it worth it for a regular user to spend 50.00 on a hardware firewall?
Ymets2k is offline   Reply With Quote
Old 09-21-2003, 05:02 PM   #2
HOT ROD
 
lil Jimmie's Avatar
 
Join Date: Sep 2000
Location: On the Edge
Posts: 4,565
If you have a broadband connection that is on all the time, a router using a NAT firewall is a great idea.
__________________
Fast enough 2 get by.....old enough 2 know what not 2 try -You know it was me
lil Jimmie is offline   Reply With Quote
Old 09-22-2003, 03:32 PM   #3
Member (9 bit)
 
Join Date: May 1999
Location: Juana Diaz, PR
Posts: 378
I just got a DSL connection and wonder the same thing. My telco provides a Zyxel Prestige 623-41 DSL modem.

There is a local forum where this issue is being discussed (security of the modems provided by the telco) but people don't seem to agree on the correct answer.

Some say a hardware firewall is a good idea, others say that a program such as ZoneAlarm is enough, yet others say that this particular modem is secure (NAT router - whatever that means - I am a newcomer to this networking thing).

Looking at the specs of this particular modem, it says the following: "Embedded firewall includes NAT, IP filtering and raw filtering".

I have noticed that the IP address the computer reports is assigned by the modem and entirely different from the IP address seen from outside. Is that good in terms of security?

Any one with experience about this particular DSL modem?
__________________
Thanks.

Luis...
luisr is offline   Reply With Quote
Old 09-22-2003, 03:38 PM   #4
Member (10 bit)
 
Join Date: Aug 2003
Location: NJ
Posts: 815
Send a message via AIM to njskatchmo
firewalsl are really annoying. They block lots of non-malicious things, like update managers of various programs, games, and all that. I know you set up the ports and such but its rather annoying. Plus most hackers would never go after a single user, unless you frag them to much online then they might get pissed and trash your computer. Unless youre running some kind of server and posting your ip everywhere i see no point in them.
njskatchmo is offline   Reply With Quote
Old 09-22-2003, 03:46 PM   #5
Stop winking at me!!!
 
Iman74's Avatar
 
Join Date: Dec 2001
Location: CT
Posts: 1,482
Send a message via Yahoo to Iman74
Let's put it this way; getting a Linksys router can't hurt, it can only help. The only thing that will hurt (a little) is your wallet.
Iman74 is offline   Reply With Quote
Old 09-23-2003, 10:53 AM   #6
Member (14 bit)
 
reboot's Avatar
 
Join Date: Mar 1999
Location: Kelowna, B.C., Canada
Posts: 9,138
luisr, if it's got NAT, then you're behind a firewall already. Sounds like a good modem, as most don't include one.
If you plan on any networking in the future, get a router with NAT.
Software firewalls are better than nothing, but nowhere near as good as NAT.
__________________
Black holes are where God divided by zero...
Cheers, Jim

Jims Modems
reboot is offline   Reply With Quote
Old 09-23-2003, 11:29 AM   #7
Member (9 bit)
 
Join Date: May 1999
Location: Juana Diaz, PR
Posts: 378
Quote:
Originally posted by reboot
luisr, if it's got NAT, then you're behind a firewall already. Sounds like a good modem, as most don't include one.
Thanks! That's good to know. The only thing is that the telco does not give the password to the users even though they "give out" the modem when signing up for the DSL service.

For what it's worth, I telnetted to my modem from work and got this in reply at the login prompt:

Code:
Raptor Firewall Secure Gateway (gv-ifw1)

                        ********************
                         Welcome to P623-41
                        ********************

ZyXEL Inc., Software Release 1.38(GA.3)
Copyright (c) 2001-2002 by ZyXEL, Inc.
Any comments?
luisr is offline   Reply With Quote
Old 09-23-2003, 11:49 AM   #8
Got Privilege?
 
fudtone's Avatar
 
Join Date: Jun 2001
Location: IA go Hawks
Posts: 1,257
Quote:
Originally posted by reboot
luisr, if it's got NAT, then you're behind a firewall already. Sounds like a good modem, as most don't include one.
If you plan on any networking in the future, get a router with NAT.
Software firewalls are better than nothing, but nowhere near as good as NAT.
sounds like the modem is taking care of the router part also. I think all he would need to network is a switch or hub.

I agree! sounds like a nice modem.
__________________
P4 2.8E | 1.5GB ddr400 VR dual channel | Sony CD-R/RW | Windows XP | ATI X1950pro | Viewsonic P95F | Intel D865PERLX | WD 36g Raptor | MCHSI 3mb Cable
"Computers are useless. They can only give you answers." Pablo Picasso (1881 - 1973)
"Absence of proof is not proof of absence." William Cowper (1731 - 1800)
Wisdom Speaks: Have in your mind that which would constitute a miracle for
you. Get the vision. Suspend disbelief and skepticism. Allow yourself to
take the journey toward real magic.
fudtone is offline   Reply With Quote
Old 09-23-2003, 01:55 PM   #9
KHT
Member (9 bit)
 
Join Date: Oct 1999
Posts: 406
Quote:
firewalsl are really annoying. They block lots of non-malicious things, like update managers of various programs, games, and all that. I know you set up the ports and such but its rather annoying. Plus most hackers would never go after a single user, unless you frag them to much online then they might get pissed and trash your computer. Unless youre running some kind of server and posting your ip everywhere i see no point in them.
It`s not a personal vendetta thing with crackers (not hackers, get it right).

Ever hear of a port scanner? Software does the dirty work for them on a large scale.
KHT is offline   Reply With Quote
Old 09-23-2003, 04:52 PM   #10
Member (10 bit)
 
Join Date: Aug 2003
Location: NJ
Posts: 815
Send a message via AIM to njskatchmo
Somesones beign antsy, I know the difference between hacker and cracker but its generally accepted to use hacker as cracker.
njskatchmo is offline   Reply With Quote
Old 09-24-2003, 11:12 AM   #11
Member (9 bit)
 
Join Date: May 1999
Location: Juana Diaz, PR
Posts: 378
I have been reading here and there about NAT security and that it rejects connection attempts from outside that are not part of a conversation initiated from inside.

Now my question is, how do instant messaging services such as ICQ and MSN Messenger get through? I mean, when a user in your contact list sends you a message first. Or is that very initial message sent through a server that already had a connection with my computer and already got past the NAT router? Or is it that these services use standard ports that are allowed access by the router?
luisr is offline   Reply With Quote
Old 09-24-2003, 11:17 AM   #12
Got Privilege?
 
fudtone's Avatar
 
Join Date: Jun 2001
Location: IA go Hawks
Posts: 1,257
Correct Luisr these apps are using ports that your router has open and a client/server is monitoring.

Why thugs don't attack these ports more directly is beyond me.
fudtone is offline   Reply With Quote
Old 09-24-2003, 11:35 AM   #13
Member (9 bit)
 
Join Date: May 1999
Location: Juana Diaz, PR
Posts: 378
Quote:
Originally posted by fudtone
Correct Luisr these apps are using ports that your router has open and a client/server is monitoring.
Thanks. That could mean that a new application using a different port migh have trouble getting through firewalls and routers.

Quote:
Why thugs don't attack these ports more directly is beyond me.
Don't talk too loud...


I love this board! So many people hang around that I normally get good answers in minutes.
luisr is offline   Reply With Quote
Reply

Bookmarks

Still Need Help? Type Your Keywords Here:


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -5. The time now is 06:23 PM.
Powered by vBulletin® Version 3.8.6
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.6.0