Thread: Firewalls
View Single Post
  #3  
Old 11-28-2009, 09:51 PM
IcIshoot is offline IcIshoot

Join Date: Mar 2004
Location: Farmington Hills, MI
Posts: 1,473

Send a message via AIM to IcIshoot Send a message via MSN to IcIshoot Send a message via Yahoo to IcIshoot
I did used to use it - I don't trust it. For one thing, it doesn't stop outbound traffic. having my computer in a datacenter, I don't want to risk spreading any thing i may get to other servers. thats why I dropped windows firewall to begin with.


Also MS has admitted that malicious code can disable the firewall.

Plus it is harder to configure - can't just readily go in and block a range of IP's from accessing the server.

Secondly, when something is going on, a proper firewall helps make it easier to figure out what is going on, and to stop it. Currently, I can easily disconnect any one from my server.

I'll probably just keep what I have since I'm used to it unless somethng better comes along. I just would love to have a firewall setup that can have rules added to the firewall by command line - that way I could tie the firewall into my server logs - server admins would be able to block trouble makers firewall side based on hostname

IcI
Reply With Quote