Need for firewall when machines are behind a NAT router ?

Need for firewall when machines are behind a NAT router ?

Secure Home | Search | About
 Microsoft Antivirus Discussions    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Need for firewall when machines are behind a NAT router ? Dimitri 12-01-2005
Posted by Dimitri on December 1, 2005, 1:40 am
If you were  Registered and logged in, you could reply and use other advanced thread options
I don't sterilize my keyboard, I don't wear gloves or a mask when I
fill up my car with gas and all I want to know is what a firewall on a
PC will protect if from if the machine is sitting with a private IP
behind a NAT router.






Dimitri




"Fish have no need for fire extinguishers"


Posted by Max Wachtel on December 1, 2005, 2:01 am
If you were  Registered and logged in, you could reply and use other advanced thread options
dimitri@dotp.com AKA Dimitri on 12/1/2005 in
thought,came up with this jewel:

> I don't sterilize my keyboard, I don't wear gloves or a mask when I
> fill up my car with gas and all I want to know is what a firewall on a
> PC will protect if from if the machine is sitting with a private IP
> behind a NAT router.
> Dimitri
> "Fish have no need for fire extinguishers"
******************Reply Separator*************************

If you get infected it will alert you to outbound connections that are
going on without your knowledge. Some firewalls like Zone Alarm have
other functions like attachment filtering.
max

NEVER download files from anywhere unless it is from the website of the
developer,manufacturer or some entity you trust. The developers
websites ALWAYS have the most up to date files that haven't been
tampered with by some third party who is "hosting"(read Leeching or
Stealing) those files without permission.
--
Virus Removal Instructions: http://home.neo.rr.com/manna4u/
Keeping Windows Clean: http://home.neo.rr.com/manna4u/keepingclean.html
Windows Help: http://home.neo.rr.com/manna4u/tools.html
Playing Nice on Usenet: http://oakroadsystems.com/genl/unice.htm#xpost
To reply by e-mail change nomail.afraid.org to gmail.com
nomail.afraid.org is setup specifically for use in USENET
feel free to use it yourself. Registered Linux User #393236

Posted by Steve Winograd [MVP] on December 1, 2005, 5:02 am
If you were  Registered and logged in, you could reply and use other advanced thread options
>I don't sterilize my keyboard, I don't wear gloves or a mask when I
>fill up my car with gas and all I want to know is what a firewall on a
>PC will protect if from if the machine is sitting with a private IP
>behind a NAT router.

A firewall can protect a computer from being attacked by an infected
computer connected to the same NAT router.

Some firewalls (e.g. Norton, McAfee, ZoneAlarm, but not Windows
Firewall) can block undesired outgoing traffic from an infected
computer to the Internet.
--
Best Wishes,
Steve Winograd, MS-MVP (Windows Networking)

Please post any reply as a follow-up message in the news group
for everyone to see. I'm sorry, but I don't answer questions
addressed directly to me in E-mail or news groups.

Microsoft Most Valuable Professional Program
http://mvp.support.microsoft.com

Posted by karl levinson, mvp on December 1, 2005, 7:15 am
If you were  Registered and logged in, you could reply and use other advanced thread options

>I don't sterilize my keyboard, I don't wear gloves or a mask when I
> fill up my car with gas and all I want to know is what a firewall on a
> PC will protect if from if the machine is sitting with a private IP
> behind a NAT router.

In addition to the other answers, a firewall often gives more robust logging
and detection, and allow for more granular rules. Many NAT routers tend to
be simpler with fewer configuration options. Some firewalls like Windows
firewalls can open up ports dynamically, which can be useful for some
protocols like FTP that assign random port numbers on the fly. Some
firewalls can inspect packet contents for malicious content or proxy
connections to ensure that the content is legitimate instead of just letting
all traffic through on port 80 including malformed traffic. Software
firewalls can do some things that NAT routers and firewall devices cannot,
such as identify and block application X from using port 80 while allowing
application Y to use that port.



Posted by David H. Lipman on December 1, 2005, 9:39 am
If you were  Registered and logged in, you could reply and use other advanced thread options

| I don't sterilize my keyboard, I don't wear gloves or a mask when I
| fill up my car with gas and all I want to know is what a firewall on a
| PC will protect if from if the machine is sitting with a private IP
| behind a NAT router.
|
| Dimitri
|
| "Fish have no need for fire extinguishers"

As always I suggest blocking TCP and UDP ports 135 ~ 139 and 445 on *any* SOHO
Router.

--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm



Similar ThreadsPosted
Virus disabling machines completely May 31, 2007, 3:18 am
Stop Error 0x8e Mult. Machines July 11, 2005, 9:31 pm
Antivirus/Anti-spyware for Windows machines November 8, 2007, 3:18 pm
Re: Malware Attacking Your Router? June 20, 2008, 2:57 pm
ZLob/DNSChanger Trojan now can modify DNS Servers in your SOHO Router June 13, 2008, 5:05 pm
ZLob/DNSChanger Trojan now can modify DNS Servers in your SOHO Router June 13, 2008, 5:50 pm
PROBLEM WITH FIREWALL AND IIS December 23, 2005, 3:01 pm
i can't enable the firewall May 10, 2006, 8:53 am
XP's Firewall August 22, 2006, 6:30 pm
Has anyone run these firewall leak tests? January 22, 2006, 6:58 am

The site map in XML format XML site map

Contact Us | Privacy Policy