Go Back   Forums > Community Chatterbox > Tech Corner
Memberlist Forum Rules Search Today's Posts Mark Forums Read
Search Forums:
Click here to use Advanced Search

 
 
Thread Tools Display Modes
Prev Previous Post   Next Post Next
Old 04-06-2009, 08:18 PM   #8
Japo
Autonomous human
 
Japo's Avatar


 
Join Date: Mar 2006
Location: ,
Posts: 4,615
Default

A connection is either inbound or outbound--both include traffic in both directions, don't get confused, it's about whether it's you or a remote node who started the connection; whether you're the server or the client.

Inbound connections (solicited by just anyone and accepted by a "listening" program or service in your computer) can be dangerous, if there's a vulnerability in your system.

Outbound connections (solicited by a local program or service in your computer) by definition need your computer to be infected to be dangerous. If a program is connecting outside from inside, it must be already inside--duh. So if you should manage to prevent infection effectively, you wouldn't need outbound filtering in your firewall.

FACT: No antivirus program can prevent you from getting infected. There's always some nasty any of them will miss, because they allow by default.

Access restrictions (XP, Vista) or a very thorough HIPS on the other hand, can prevent infections--unless a vulnerability in them is exploited successfully--as long as you don't invite them by circumventing those of course (Trojan horse).

Most programs don't need to listen as server (the most notable exceptions are P2P "clients"), so filtering inbound connections is much much much less hard work than filtering every outbound connection.

The Windows firewall filters inbound connections, so you'll be safe (and pass every ShieldsUP test), as long as you don't let your local system get infected.

The one in Vista even includes some non-intrusive outbound filtering--although it could probably be leaked (circumvented by stealth) if tried a little hard. So can certainly be leaked ZoneAlarm Free, and many others. A mere firewall (network traffic control) cannot guarantee that a program will connect outside stealthily (such as hijacking another program) unless it includes extensive HIPS (application control) features.

If you still want to go for an impregnable outbound firewall, and if you try Comodo and it works for you, you won't find a stronger one. It includes a _full_ HIPS (meaning that _all_ activity is thoroughly monitored, not just network traffic). It has very little resource usage, all things considered. You can opt them full HIPS down to a level that it just makes the network firewall leak-proof, without controlling further activity. Otherwise it includes some tools to reduce need for user intervention when working with programs from really trustworthy sources ("trusted vendors" for digitally signed programs, "clean PC mode", temporary "installation mode", "training mode"--they also work for the firewall component). It now comes bundled with its own Comodo Antivirus, although that's not yet one of the best, and again you can opt it out during installation.

Hope it helps.
__________________
Life starts every day anew. Prospects not so good...
Japo is offline                         Send a private message to Japo
Reply With Quote
 


Similar Threads
Thread Thread Starter Forum Replies Last Post
Your Recommendation of Games please. The Forgotten Gaming Zone 17 02-01-2009 08:21 AM
Need Recommendation For Pc Game rabadi Gaming Zone 13 04-07-2005 05:21 AM

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump
 


The current time is 05:16 PM (GMT)

 
Powered by vBulletin® Version 3.7.1
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.