July 27, 2004 01:27 PM

A First Look at Windows Firewall

Rating: (0)
Windows IT Pro
InstantDoc ID #43363

After plowing through more than 200 pages of documentation about the extensive changes in Windows XP Service Pack 2 (SP2), I wasn't optimistic about testing the XP SP2 beta. With the introduction of a real firewall; security controls for Distributed COM (DCOM), remote procedure call (RPC), and WWW Distributed Authoring and Versioning (WebDAV) operations; secure wireless networking; the ability to kill pop-ups; and hands-on management of Microsoft Internet Explorer (IE) plug-ins, SP2 has m...

ARTICLE TOOLS

You must be a paid Professional Member to access this entire article.

Already a Professional Member? Please log in now:

NOT A PROFESSIONAL MEMBER? YOU CHOOSE:

Monthly or Annual

Professional Membership

VIP Membership

Compare Member Benefits

Add a Comment

I installed the sp2 and i think is was a big mistake. I would want to use it's firewall because ive been using ZA for the past 2 yrs and worked fine. but now i tried to install a new version of ZA and automatically i gor a very rare ip while my router's config was left untouched. 169.256.93.230 was the address and windows would not let me connect for it said it was an unsecure connection. even after allowing that connection i could get no internet access through it so all my attemps were worthless. an clues?

Anonymous User 11/15/2004 7:45:54 PM


Tried SP2 on one computer, and the firewall would not prevent accessing local drives/shares. Reformatted that computer and not installing SP2 again at this time.

pctech3 7/28/2004 3:21:22 PM


Actually, stopping incoming traffic doesn't help with Trojan Horse programs. They typically come in via email, IM file transfers, or other transactions you initiate. Once installed, Trojans call home for instructions. The firewall sees the call home as outgoing traffic, thinks it's from you, and lets it go.
-Fred Wamsley CISSP

Beryllium Sphere LLC7/28/2004 1:03:57 PM


Regarding more info on Group Policy settings for the Windows Firewall - see this doc on the Microsoft website http://www.microsoft.com/downloads/details.aspx?FamilyID=4454e0e1-61fa-447a-bdcd-499f73a637d1&DisplayLang=en
It has a bunch of info as of the RC and I'm hoping they will update when they ship SP2

GPRainer7/28/2004 11:27:22 AM


I just installed SP2 RC2 on a clean install of XP Pro running on MS Virtual PC. The Firewall and Computer Browser Service's will not start. I receive and Event ID: 7023 in the system log.

dandav7/27/2004 1:57:54 PM


alwayssmilingguy, you shouldn't have any problems running another firewall along with the XP SP2 firewall. I'm also running Kerio Personal Firewall to prevent unauthorized application from accessing the internet (XP firewall only protects againts incoming traffic) and so far both firewalls coexist without any problems.

There's one thing I don't understand about the XP SP2 firewall: the ICMP settings. First, there's no way to define a scope (local subnet - internet) as there's with the exception list. Second you can set ICMP settings via the advanced tab of the firewall applet, but in addition you can also set them on each connection seperately. What's the relation between those 2 settings? If the first group of settings is global for all connections, then why isn't this reflected in the user interface?

timo477/27/2004 1:33:44 PM


I'm curious as to whether this firewall is 'friendly' to other firewalls? Since, I'm sure a lot of people already have a firewall on their computers. Will this work with the other firewalls or do you have to disable one of them?

Patrick7/27/2004 12:54:16 PM


I am looking forward to hearing more about managing the firewall with group policies. Also...how does it affect other apps (non-microsoft apps especially)

J7/27/2004 12:28:45 PM


You must log on before posting a comment.

Are you a new visitor? Register Here
Free Power Tools Brochure
Get Mark Minasi's 17-page guide today!



      

advertisement

GOOGLE LINKS
SPONSORED LINKS
FEATURED LINKS

White Papers

Your remote offices contain valuable electronic data – are they adequately protected? Learn how proven technologies can reliably and cost-effectively back up a branch office from a central location, in real time, to disk or tape, and even utilize existing backup solutions.

Downloads

PacketTrap IT is a comprehensive and affordable network management and application monitoring solution that solves problems associated with bandwidth, network and application performance, and connectivity. Gain insight into your network - try PacketTrapIT free for 21 days!

Web Seminars

IT administrators have to solve a myriad of problems. This web seminar outlines the ten most common systems management pains - including managing highly distributed systems and dealing with data theft/loss – and the best practices to address each.

eLearning Series

We bring the experts direct to you to share their real-world perspective and expertise. During each event, three sessions stream in real time, so you can learn, ask questions, and get solutions.
Upcoming event: Getting the Most with Exchange 2010 with Paul Robichaux

Subscribe to Windows IT Pro!

Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.