Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » 2006 Windows firewall 'Leak test' » FIRST POST
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Post a:
Post a:
« Jetico???  
AuthorAll Replies


Steve
I'm a PC, so shut up
Consultant
join:2001-03-10
Yorba Linda, CA

reply to LiberalKing
Re: FIRST POST

said by LiberalKing See Profile :

First moron, more like it.
said by the article :

it was not really designed to stop programs from getting out (phoning home)
Is "was in no way designed for" different from "was not really designed for" ? I think the latter suggests a minor effort which expects to fail, while the former suggests that the issue was not addressed in any way.

The XP/SP2 firewall is strictly inbound - by design - and though one can make a fair case for a firewall in both directions, hinting that XP/SP2 doesn't do such a good job on the outbound side is really disingenuous.

Steve
--
Stephen J. Friedl • Unix Wizard • Microsoft Security MVP • Tustin, California USA • my web site


TKJunkMail
Enjoy the sun
Premium
join:2002-03-03
Avalon, NJ
·Sprint Mobile Broa..
·Comcast

said by Steve See Profile :

The XP/SP2 firewall is strictly inbound - by design - and though one can make a fair case for a firewall in both directions, hinting that XP/SP2 doesn't do such a good job on the outbound side is really disingenuous.
I've read that the firewall that comes with Windows Vista will be a true 2 way firewall. The existing firewall vendors are already probably having their lawyers draw up anti-trust charges against Microsoft.
--
--
Join Red Room Forum
BLOG tkjunkmail.blogspot.com
My Web Page


BillRoland
Premium
join:2001-01-21
Ocala, FL
clubs:
·Cox HSI

reply to Steve
said by Steve See Profile :

said by LiberalKing See Profile :

First moron, more like it.
said by the article :

it was not really designed to stop programs from getting out (phoning home)
Is "was in no way designed for" different from "was not really designed for" ? I think the latter suggests a minor effort which expects to fail, while the former suggests that the issue was not addressed in any way.

The XP/SP2 firewall is strictly inbound - by design - and though one can make a fair case for a firewall in both directions, hinting that XP/SP2 doesn't do such a good job on the outbound side is really disingenuous.

Steve
Amen Steve See Profile. I'd really like to know why an inbound only firewall failing an outboung firewall test, is news?
--
"Don't steal. The government hates competition."

Done_Posting
Shoot to kill
Premium
join:2003-08-22
Toledo, OH
reply to TKJunkMail
I've also read that the two-way firewall is supposed to make an appearance in XP/SP3 when it's realeased later this year.

- Tate
--
"I may work for a cable ISP, but I'm still an okay guy."


kamm

join:2001-02-14
Brooklyn, NY
·T-Mobile US

reply to TKJunkMail
Correct, MS actually posted the details months ago: »www.microsoft.com/technet/commun···106.mspx

Moreover it's been already in Vista betas for a while now (since CTP Dec) but it wasn't that easy to activate: »www.networkworld.com/news/2006/0···all.html

I've received the latest beta (CTP Feb) from MSDN weeks ago but I haven't had a chance yet to look whether it's got better or not...


micl
Visit Lovely Downtown Port Starboard
Premium
join:2001-10-25
Silver Spring, MD

reply to Steve
I remember when a firewall meant it blocked in-bound *and* outbound. If it just blocks in-bound, is it really a firewall just because someone calls it a firewall? Or is it just NAT?
--
If I don't see you in the future, I'll see you in the pasture


Steve
I'm a PC, so shut up
Consultant
join:2001-03-10
Yorba Linda, CA

said by micl See Profile :

I remember when a firewall meant it blocked in-bound *and* outbound.
That's never been the definition: a firewall is a device which applies access policy to network traffic, and the administrator can define it in any direction as he wishes.

In 1994 I was setting up Livingston Portmaster routers with fairly extensive filtering rules, and just because I chose to employ no outbound protection doesn't mean that it wasn't a firewall.

And the XP firewall isn't do NAT anyway.

Steve
--
Stephen J. Friedl • Unix Wizard • Microsoft Security MVP • Tustin, California USA • my web site


AnonName

@kaballero.com

Ah, the Portmaster... I remember them well. I managed a few of them.

Great device, I liked it better than the Cisco 52xx and 53xx RAS servers but a hundred and twenty modems is just a mess of wires and cables.

Ever work with a DiGi board? I still have a couple of those around

-m-


The complements were intended not snide. I'm looking to bury the hatchet, not sharpen it.
Forums » 2006 Windows firewall 'Leak test'« Jetico???  


Thursday, 26-Nov 03:20:35 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [105] New AT&T Ad Campaign Hits Back At Verizon
· [101] Time Warner Cable Fires Broadside At Broadcasters
· [95] Apple Joins AT&T Verizon Snark Fest
· [85] New Bill Takes Aim At Higher Verizon ETFs
· [63] TiVo Sees Record Customer Losses
· [48] In-Flight Internet Headed For Bumpy Landing?
· [34] Senators Want ACTA Made Public
· [30] Earthlink Suffers From Major E-mail Outage
· [30] AT&T Offers New Prepaid Wireless plans
· [30] Despite Billions In USF Fees, U.S. Libraries Lack Bandwidth
Most people now reading
· Windows 7 boot manager editing questions [Microsoft Help]
· Shutting of Electricity Temporarily (up to 1 yr) to Save $$$ [Home Repair & Improvement]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Whats the big deal about being "Old School"....? [World of Warcraft]
· [DVR] DCX3400 - 30 Second Skip Forward [Comcast Cable TV]
· I'll Just Unplug That... [No, I Will Not Fix Your #@$!! Computer]
· [ PvE] Items that will just not drop in your raid [World of Warcraft]
· HOW-TO: QoS and Tomato (fixes "choppy voice") [MagicJack]
· Reasons #137/#138 to Love Windows Home Server [Microsoft Help]
· Opening a file download dialog from a JavaScript function. [Webmasters and Developers]