It is currently Mon May 12, 2025 10:59 am

All times are UTC - 8 hours [ DST ]




Post new topic Reply to topic  [ 13 posts ] 
Author Message
Offline
 Post subject: Firewalling Your Computer
Post #1 Posted: Thu Dec 26, 2013 9:02 am 
Lives in sente

Posts: 946
Liked others: 1
Was liked: 41
Rank: IGS 5kyu
KGS: KoDream
IGS: SmoothOper
I recently upgraded my computer to windows 8, and it came with a built in firewall. I though finally they got something right, but though it is incrementally better, it's still old skool kludged, I mean foo barred. The blocking of incoming connections is shipped enabled and works pretty well it blocks, all incoming connections and has notifications setup, but the outgoing connections not so much. First of all if you enable it, it doesn't notify when it drops a connection, like the incoming firewall. Secondly if you get a third party notifier like windows notifier firewall (WNF). If you make specific rules, especially for all the programs that are loaded as windows services(svchost.exe), which could be just, about anything, don't seem to follow the rules, and continuously pop up a message for connecting. For example if I allow Dnscache, which is a harmless program, it keeps notifying me that it can't get through, though I have explicitly given it a rule to allow it. And whenever I set a block for BITS(the windows file transfer, it keeps asking me. Its almost as if windows is ignoring the firewall rules.

Has anyone else figure out a good strategy for managing these things. I think ideally I would just block everything except my mail client and web browser, however windows keeps phoning home, from windows store to windows update, to the bing task bar.

I think I should be able to manage the firewall, so that I don't have to install an Intel owned McAfeee cpu sucking anti malware process.

Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #2 Posted: Thu Dec 26, 2013 9:12 am 
Oza

Posts: 2180
Location: ʍoquıɐɹ ǝɥʇ ɹǝʌo 'ǝɹǝɥʍǝɯos
Liked others: 237
Was liked: 662
Rank: AGA 5d
GD Posts: 4312
Online playing schedule: Every tenth February 29th from 20:00-20:01 (if time permits)
Sounds like the best strategy would be to install Linux.

_________________
Still officially AGA 5d but I play so irregularly these days that I am probably only 3d or 4d over the board (but hopefully still 5d in terms of knowledge, theory and the ability to contribute).


This post by DrStraw was liked by 3 people: Joaz Banbeck, joellercoaster, TheBigH
Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #3 Posted: Thu Dec 26, 2013 9:16 am 
Lives in gote
User avatar

Posts: 507
Location: Germany
Liked others: 176
Was liked: 46
Rank: terrible
OGS: paK0, paK0666
Universal go server handle: paK0
I'd say turning it off and using your routers firewall seems like the easiest solution.

Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #4 Posted: Thu Dec 26, 2013 9:18 am 
Lives in sente

Posts: 946
Liked others: 1
Was liked: 41
Rank: IGS 5kyu
KGS: KoDream
IGS: SmoothOper
DrStraw wrote:
Sounds like the best strategy would be to install Linux.


I think you can lock down a linux box, but it isn't like it is just as much of pain to manage.

Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #5 Posted: Thu Dec 26, 2013 9:33 am 
Lives in sente

Posts: 946
Liked others: 1
Was liked: 41
Rank: IGS 5kyu
KGS: KoDream
IGS: SmoothOper
paK0 wrote:
I'd say turning it off and using your routers firewall seems like the easiest solution.


The windows 8 firewall has some features that are nice if they weren't kludged and foo barred, for example I can alow or block not just ports and ip addresses but also specific applications, though the ability to block specific services(dlls) is falls short. It appears to be possible, but doesn't seem to work, consistently.

Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #6 Posted: Thu Dec 26, 2013 10:08 am 
Judan

Posts: 6270
Liked others: 0
Was liked: 797
If W8 is halfway like W7, open extended firewall settings and there must be some log file enable option. Use it, then configure the firewall accordingly.

Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #7 Posted: Thu Dec 26, 2013 10:55 am 
Lives in sente

Posts: 946
Liked others: 1
Was liked: 41
Rank: IGS 5kyu
KGS: KoDream
IGS: SmoothOper
RobertJasiek wrote:
If W8 is halfway like W7, open extended firewall settings and there must be some log file enable option. Use it, then configure the firewall accordingly.


I tried that, but for some reason the log was empty, maybe I have to figure out how to give the firewall logger permission to access the log file? wtf :scratch:

http://www.nextofwindows.com/tracking-f ... ewall-log/

Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #8 Posted: Thu Dec 26, 2013 1:19 pm 
Oza

Posts: 2356
Location: Ireland
Liked others: 662
Was liked: 442
Universal go server handle: Boidhre
I'm not exactly clear as to why you actually want to do any of this. Or micromanage to this extent. Dr. Straw's jest may be quite correct here, if you want this level of fine control why on Earth are you using Windows?

Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #9 Posted: Thu Dec 26, 2013 7:13 pm 
Lives in sente

Posts: 946
Liked others: 1
Was liked: 41
Rank: IGS 5kyu
KGS: KoDream
IGS: SmoothOper
Boidhre wrote:
I'm not exactly clear as to why you actually want to do any of this. Or micromanage to this extent. Dr. Straw's jest may be quite correct here, if you want this level of fine control why on Earth are you using Windows?


I write software, I don't make hardware software purchasing decisions at companies, but it would be nice if I didn't have to constantly worry about my computer being hijacked, however there was a flake named Bill Gates, and he thought it would be great if grandma's new fangled phonograph, had all these programs calling home, or if you put a thumb drive in a computer it would auto run viruses...

Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #10 Posted: Thu Dec 26, 2013 10:40 pm 
Judan

Posts: 6270
Liked others: 0
Was liked: 797
If that is your concern, here are ideas beyond the firewall:

http://home.snafu.de/jasiek/windows_sec ... ncept.html

Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #11 Posted: Fri Dec 27, 2013 5:03 am 
Lives in sente

Posts: 946
Liked others: 1
Was liked: 41
Rank: IGS 5kyu
KGS: KoDream
IGS: SmoothOper
RobertJasiek wrote:
If that is your concern, here are ideas beyond the firewall:

http://home.snafu.de/jasiek/windows_sec ... ncept.html


That is pretty cool thanks. On vista I was using the user directory encrypted files, which seemed to be fairly secure, but it seems I had to turn it off to install hardware and some software. Maybe the UAC on win 8 is better. I kind of bumped into some issues on my Cygwin directory, setting groups and users there doesn't seem to mesh with the windows UAC. Maybe I just need to get familiar with it. It kind of bothered me that there were all these different accounts that seemed to have default privileges.

Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #12 Posted: Fri Dec 27, 2013 8:58 am 
Lives in sente

Posts: 946
Liked others: 1
Was liked: 41
Rank: IGS 5kyu
KGS: KoDream
IGS: SmoothOper
It seems that the solution to my original problem is to manually create the rules for the services. It seems that WFN isn't creating them correctly, and I noticed that there is an extra level of security built in for firewalling windows services, so I suspect therein lies the kludge. WFN is still pretty handy though, because I can look up the services, when I know they are trying to connect. It is still difficult to figure what the services are and why they want to connect out, but I guess that is why they call Seattle, mud town, cause its as clear as mud. Yeah, yeah, I know security double talk says they can't release that information, or they would have to kill us yadda yadda yadda. Pimply faced kids could do a better job of writing an operating system, oh wait...

Top
 Profile  
 
Offline
 Post subject: Re: Firewalling Your Computer
Post #13 Posted: Wed Jan 08, 2014 12:04 pm 
Lives in sente

Posts: 946
Liked others: 1
Was liked: 41
Rank: IGS 5kyu
KGS: KoDream
IGS: SmoothOper
It seems that there are also windows "hidden" firewall rules that permit certain types of access, and what was confusing, is that windows firewall notifier(wfn) evidently blocks those, if I add the blocking rules then WFN figures out to stop notifying me when it blocks those applications from connecting. voodoo I say VOODOO! I suppose the WFN documentation could be a little more clear the prefix WSH(windows hidden) for the rules was just a little vague, but it is nice that it finds and blocks those. It appears the primary culprit was the windows key management software that likes to dial out every half an hour. The windows event logging is really annoying, because it just keeps logging the legacy netbios local area network pings, so you have to wade through that and can't find any of the events that you were looking. Why they didn't have the event viewer find or filtering search the ip field I don't know, I can only suspect people would actually be able to secure their box if they had that information.

Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 13 posts ] 

All times are UTC - 8 hours [ DST ]


Who is online

Users browsing this forum: No registered users and 1 guest


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group