[ale] Good windows firewall ?

Vincent Fox vf5 at plm.gatech.edu
Sun Jun 20 22:50:15 EDT 2004


> It really makes no sense to have firewall software running on 2+ 
> machines if they all have access via the same connection.  One firewall 
> to protect them all. :)

It's called a Layered Defense.

Example:
I have an IPCop box as my home router which is also a NAT/firewall of course.

I *still* run iptables on any local Linux boxes, and on Windows I use
the XP firewall at minimum, or the CA Armor suite.

I am familiar with all too many security incidents where the dependence
on the One Big Security Device bites you in the ass. It can be a case of
a Maginot Line where you *think* you have a good firewall, but someone
finds a way around it and bingo they are inside your green network.
Or it can be a simple case of someone brings a compromised laptop
into your green. This is pretty common.



More information about the Ale mailing list