ABXZone Computer  Forums



Welcome to the ABXZone Computer Forums forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact contact us.

Reply
 
LinkBack Thread Tools Display Modes
Old 10-09-2004, 12:55 AM   #1
Donnie Darko lives
 
Finalheaven's Avatar
 
Join Date: Apr 2004
Location: Boston, MA
Posts: 1,872
I DID IT! Achieved security perfection!


We all know and love shields up. Well, when I first used it, my port 113 was returned as closed, and my LAN replied to pings. Well, I finally took the time to change some settings on my router, and VIOLA! All tests passed on shields up. I'm a security nirvana!

Attached Images
File Type: jpg untitled.JPG (153.5 KB, 179 views)
(Offline)   Reply With Quote
Old 10-09-2004, 12:56 AM   #2
Registered User
 
Rob2687's Avatar
 
Join Date: Apr 2004
Location: Canada
Posts: 230
Good job
(Offline)   Reply With Quote
Old 10-09-2004, 01:12 AM   #3
Never Ending
 
wayne_abx's Avatar
 
Join Date: Jul 2002
Location: Vancouver, Washington (State)
Posts: 4,188
Hi Finalheaven,

Please don't get to complacent, while this is good for your router/firewall and Network it still doesn't protect you against Viruses, Trojans and worms only a good AV/TD and your vigilance would help in protecting your PC!

By the way.. good job

-wayne
__________________
System-1 (primary)
Intel D875PBZLK FMB 1.5 > Pentium 4/ 3.0E (D0) > Crucial Ballistix 512mb PC4000 (Dual Channel) > ATI Radeon 9500 Pro (128) > Audigy 2 Platinum > Thermaltake P4 Spark 7+ (Xaser Edition) - Antec 80x80mm x5 > 1x 80GB WD SE - 2x Seagate 200GB 7200RPM Barracuda 7200.7 Plus SATA > Lite-On LDW811s dvd +/- Tashiba SDM1712 DvD > Antec 430 TP > WinXP W/SP-2

Gigabit Network, Linksys WRT54GS, Linksys EG008W 8-port gigabit switch, ximeta network storage, Motorola SB4200

Last edited by wayne : 10-09-2004 at 01:18 AM.
(Offline)   Reply With Quote
Old 10-09-2004, 01:13 AM   #4
The race for quality has no finish line- so technically, it's more like a death march.
 
Join Date: Feb 2001
Posts: 18,159
I thought the only way to have complete security of the computer is to not have one.
__________________

(Offline)   Reply With Quote
Old 10-09-2004, 01:16 AM   #5
Never Ending
 
wayne_abx's Avatar
 
Join Date: Jul 2002
Location: Vancouver, Washington (State)
Posts: 4,188
Quote:
Originally Posted by pointreyes
I thought the only way to have complete security of the computer is to not have one.
Umm...

Ok.. maybe not to far off

-wayne
__________________
System-1 (primary)
Intel D875PBZLK FMB 1.5 > Pentium 4/ 3.0E (D0) > Crucial Ballistix 512mb PC4000 (Dual Channel) > ATI Radeon 9500 Pro (128) > Audigy 2 Platinum > Thermaltake P4 Spark 7+ (Xaser Edition) - Antec 80x80mm x5 > 1x 80GB WD SE - 2x Seagate 200GB 7200RPM Barracuda 7200.7 Plus SATA > Lite-On LDW811s dvd +/- Tashiba SDM1712 DvD > Antec 430 TP > WinXP W/SP-2

Gigabit Network, Linksys WRT54GS, Linksys EG008W 8-port gigabit switch, ximeta network storage, Motorola SB4200
(Offline)   Reply With Quote
Old 10-09-2004, 01:19 AM   #6
Donnie Darko lives
 
Finalheaven's Avatar
 
Join Date: Apr 2004
Location: Boston, MA
Posts: 1,872
I agree wayne. I've taken steps there as well.

I do have a question about this though. If I setup my firewall to deny all incoming pings to my LAN, I can't seem to connect using XP's crappy FTP. And I use that to manage my site. LOL. I know I should be using something else. Is there a way to block unwanted pings, yet still be able to use XP's FTP? IE is there a way to distinguish between good pings and bad pings? Thanks.!
(Offline)   Reply With Quote
Old 10-09-2004, 01:20 AM   #7
Resident ABX Wizard
 
Fraoch's Avatar
 
Join Date: May 2003
Location: London, Ontario
Posts: 8,814
Finalheaven:

If you're on a security "kick" and you have some underpowered hardware around (IIRC you built a low-cost system about a month ago) check out ClarkConnect. I just got it up and running tonight and I think it's the greatest thing since the mouse!

It loads a specialized Linux OS onto your box, essentially turning it into a dedicated firewall with most or all the power of the "big boys". You don't need to know Linux to run it as everything is controlled through a slick web interface.

The software is in continual development (it's modular and upgradeable piece-by-piece) and the Home and Firewall/VPN versions are free!

Just be prepared to lose your "perfect" picture since it listens on a port right in the middle of the GRC scan image for the web interface. However, the port is secured with 128-bit encryption and requires a user name and password. Plus, since it's Linux, it's naturally harder to break into.

It's a lot of fun setting everything up as well!
(Offline)   Reply With Quote
Old 10-09-2004, 01:22 AM   #8
Donnie Darko lives
 
Finalheaven's Avatar
 
Join Date: Apr 2004
Location: Boston, MA
Posts: 1,872
oooh good call fraoch. aye, I have my suse linux box sitting right here next to me. When I'm not spending time on my main rig, I play with the 'toddler' as i like to call it (costing less than $260, it makes sense why). I'll check clarkconnect out.
(Offline)   Reply With Quote
Old 10-09-2004, 01:29 AM   #9
Never Ending
 
wayne_abx's Avatar
 
Join Date: Jul 2002
Location: Vancouver, Washington (State)
Posts: 4,188
Quote:
Originally Posted by Finalheaven
I agree wayne. I've taken steps there as well.

I do have a question about this though. If I setup my firewall to deny all incoming pings to my LAN, I can't seem to connect using XP's crappy FTP. And I use that to manage my site. LOL. I know I should be using something else. Is there a way to block unwanted pings, yet still be able to use XP's FTP? IE is there a way to distinguish between good pings and bad pings? Thanks.!
Hey, if all your ports are showing 'Stealth' and you are sure you don't have any Trojans, Worms or Viruses, don't worry about the pings. Pings are natural part of Broadband Life (unfortunately) I would be concerned if you started to get swamped to the point of causing connection or surfing problems. Not all pings are bad and for some things, pings are needed!

-wayne
__________________
System-1 (primary)
Intel D875PBZLK FMB 1.5 > Pentium 4/ 3.0E (D0) > Crucial Ballistix 512mb PC4000 (Dual Channel) > ATI Radeon 9500 Pro (128) > Audigy 2 Platinum > Thermaltake P4 Spark 7+ (Xaser Edition) - Antec 80x80mm x5 > 1x 80GB WD SE - 2x Seagate 200GB 7200RPM Barracuda 7200.7 Plus SATA > Lite-On LDW811s dvd +/- Tashiba SDM1712 DvD > Antec 430 TP > WinXP W/SP-2

Gigabit Network, Linksys WRT54GS, Linksys EG008W 8-port gigabit switch, ximeta network storage, Motorola SB4200
(Offline)   Reply With Quote
Old 10-09-2004, 06:21 PM   #10
Resident ABX Wizard
 
Fraoch's Avatar
 
Join Date: May 2003
Location: London, Ontario
Posts: 8,814
An update on the ClarkConnect info I posted - you do not need the ports open, so I stealthed them - see here.
(Offline)   Reply With Quote
Old 10-09-2004, 07:23 PM   #11
Registered User
 
ThugsRook's Avatar
 
Join Date: Jul 2002
Location: FLA
Posts: 1,832
i dont understand ~ even a standard WXP firewall can do this.

whats the point of this thread?
__________________
P4 2.26b @ 3.59ghz
KHX3000 2x512mb @ 422ddr c2622
Abit IC7-G @ 211fsb SR-A-A-A-E
ThermalRight SP-94 & NB-1C
eVGA LE6800 GTU @ 425x1200
(Offline)   Reply With Quote
Old 10-09-2004, 10:32 PM   #12
Donnie Darko lives
 
Finalheaven's Avatar
 
Join Date: Apr 2004
Location: Boston, MA
Posts: 1,872
Pride?!

The point is it's not by default, and not a lot of people bother. I was just proud cause I can found my problem ports (that were showing as closed), and stealthed them myself.

Don't people post here all the time when they build a new machine, or even buy a new machine? And I think it's great that they do. I was just adding my own personal achievment.
(Offline)   Reply With Quote
Old 10-09-2004, 11:18 PM   #13
TCM
Registered User
 
Join Date: Sep 2001
Posts: 82
Quote:
Originally Posted by Finalheaven
Well, when I first used it, my port 113 was returned as closed, and my LAN replied to pings.
oh boy, you have no clue and freak out about a "security test" telling you all your ports are "stealthed" while at the same time you probably broke some normal network functions by blocking icmp? closed ports are problem ports? ftp breaks by blocking pings? you have some serious network magic going on there.

the thread subject alone makes me shake head.

really, it may sound arrogant but get a clue, please.
(Offline)   Reply With Quote
Old 10-10-2004, 12:23 AM   #14
Please stand by...
 
billfuddled's Avatar
 
Join Date: Apr 2003
Location: Illinois
Posts: 583
Quote:
Originally Posted by TCM
really, it may sound arrogant but get a clue, please.
Yes, you're right, it does. How 'bout writing us up your guidelines to securing one's network connection? Add something positive to the thread.
(Offline)   Reply With Quote
Old 10-10-2004, 12:29 AM   #15
Angry American
 
Join Date: Jun 2002
Location: Long Island, NY
Posts: 793
Quote:

oh boy, you have no clue and freak out about a "security test" telling you all your ports are "stealthed" while at the same time you probably broke some normal network functions by blocking icmp? closed ports are problem ports? ftp breaks by blocking pings? you have some serious network magic going on there.

the thread subject alone makes me shake head.

really, it may sound arrogant but get a clue, please.
I'll bite. What client-side functions would he have likely broken by blocking ICMP? As you note, FTP should not break by blocking ICMP packets. Nor should anything else.

Endaar
__________________


(Offline)   Reply With Quote
Reply

« - | NAV vs. NOD32 »

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



Powered by vBulletin® Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.0.1
vBulletin Skin developed by: vBStyles.com