PDA

View Full Version : SP2 Firewalll


Laurence
October 12th 04, 08:35 PM
I have installed sp2 on my machine with no problems. Actually it was
simple, I just let my single user computer do it all. It took about 2 hours
or so, but when I re booted, it all worked. My only question concerns the
firewall. I have been using a commercial software program firewall on my
machine and it works fine, has been for quate some time. I checked the
software mfg's web site and they said it was ok with SP2 and it is.
Microsoft says its ok to turn their firewall off and I just did so. I did
run both firwalls for the last two days and there were no problems,
everything works on my system. Can I run both, is there any advantage to
doing it, or should I just shut the MS Firewall off and continue to use my
current one which works great.

Thanks, Laurence

Carey Frisch [MVP]
October 12th 04, 08:42 PM
To avoid conflicts and error messages, it is recommended
that you only use one firewall. Attempting to use two firewalls
will not accomplish additional protection.

Windows XP Internet Connection Firewall blocks incoming attacks only
http://www.mvps.org/sramesh2k/firewall.htm

Frequently Asked Questions About Internet Firewalls
http://www.microsoft.com/athome/security/protect/firewall.mspx

Understanding Windows Firewall
http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx

If using a third-party firewall:

Open your Control Panel, then double-click the Security Center icon.
In the left side, click on the link titled: "Change the way Security Center
alerts me". Next, uncheck the Firewall Alert Setting, then click OK.

Frequently asked questions about Windows Security Center
http://support.microsoft.com/default.aspx?scid=kb;en-us;883792&Product=windowsxpsp2

--
Carey Frisch
Microsoft MVP
Windows XP - Shell/User

Be Smart! Protect Your PC!
http://www.microsoft.com/athome/security/protect/default.aspx

--------------------------------------------------------------------------------------

"Laurence" wrote:

| I have installed sp2 on my machine with no problems. Actually it was
| simple, I just let my single user computer do it all. It took about 2 hours
| or so, but when I re booted, it all worked. My only question concerns the
| firewall. I have been using a commercial software program firewall on my
| machine and it works fine, has been for quate some time. I checked the
| software mfg's web site and they said it was ok with SP2 and it is.
| Microsoft says its ok to turn their firewall off and I just did so. I did
| run both firwalls for the last two days and there were no problems,
| everything works on my system. Can I run both, is there any advantage to
| doing it, or should I just shut the MS Firewall off and continue to use my
| current one which works great.
|
| Thanks, Laurence

Andre Da Costa
October 12th 04, 08:45 PM
Its kinda over kill in some cases especially since the Firewall in SP2 is
both bi-directional, it checks content coming in and out and I bet yours
does the same, but I don't see it as a problem running both since they
co-existing.

See links:
http://support.microsoft.com/default.aspx?kbid=842242
http://support.microsoft.com/default.aspx?kbid=875357

Andre
"Laurence" > wrote in message
...
>I have installed sp2 on my machine with no problems. Actually it was
>simple, I just let my single user computer do it all. It took about 2
>hours or so, but when I re booted, it all worked. My only question
>concerns the firewall. I have been using a commercial software program
>firewall on my machine and it works fine, has been for quate some time. I
>checked the software mfg's web site and they said it was ok with SP2 and
>it is. Microsoft says its ok to turn their firewall off and I just did so.
>I did run both firwalls for the last two days and there were no problems,
>everything works on my system. Can I run both, is there any advantage to
>doing it, or should I just shut the MS Firewall off and continue to use my
>current one which works great.
>
> Thanks, Laurence
>

BM
October 12th 04, 08:47 PM
Laurence,
I have always found it best to run only one version of firewall software on
a particular PC. You may run into problems if you need to configure specific
rules to allow access. If the software you are using works fine, go with it.

"Laurence" wrote:

> I have installed sp2 on my machine with no problems. Actually it was
> simple, I just let my single user computer do it all. It took about 2 hours
> or so, but when I re booted, it all worked. My only question concerns the
> firewall. I have been using a commercial software program firewall on my
> machine and it works fine, has been for quate some time. I checked the
> software mfg's web site and they said it was ok with SP2 and it is.
> Microsoft says its ok to turn their firewall off and I just did so. I did
> run both firwalls for the last two days and there were no problems,
> everything works on my system. Can I run both, is there any advantage to
> doing it, or should I just shut the MS Firewall off and continue to use my
> current one which works great.
>
> Thanks, Laurence
>
>
>

Oli Restorick [MVP]
October 12th 04, 08:59 PM
SP2's firewall does *not* do outbound filtering.

Oli


"Andre Da Costa" > wrote in message
...
> Its kinda over kill in some cases especially since the Firewall in SP2 is
> both bi-directional, it checks content coming in and out and I bet yours
> does the same, but I don't see it as a problem running both since they
> co-existing.
>
> See links:
> http://support.microsoft.com/default.aspx?kbid=842242
> http://support.microsoft.com/default.aspx?kbid=875357
>
> Andre

SlowJet
October 12th 04, 09:12 PM
The windows firewall is only blocking unsolicided input.
Anything on the inside can get out by asking and since the WFW knows it is
expecting a response, it will get one.
i.e. Adware / spyware / keystoke recorders.

PORTS? How many output ports actually get blocked by default by a 3rd party
FW?
Not as many as should be.

I run two FW's because my 3rd party FW seems to be comfortable with the WFW.
I put the 3rd party FW in the exception list of the WFW.
I do this because the windows fire wall starts up long before mine is ready
and it's called "Shields UP"

I have my FW very tight. a hand full of ports open. So tight I can't ever
get windows time.

So yes, you need a 3rd party FW that blocks output ports and you need to
close more than the default sets.

Runing with WFW as an exception is dependent on your firewall make, model
and brand.

SJ
"Andre Da Costa" > wrote in message
...
> Its kinda over kill in some cases especially since the Firewall in SP2 is
> both bi-directional, it checks content coming in and out and I bet yours
> does the same, but I don't see it as a problem running both since they
> co-existing.
>
> See links:
> http://support.microsoft.com/default.aspx?kbid=842242
> http://support.microsoft.com/default.aspx?kbid=875357
>
> Andre
> "Laurence" > wrote in message
> ...
>>I have installed sp2 on my machine with no problems. Actually it was
>>simple, I just let my single user computer do it all. It took about 2
>>hours or so, but when I re booted, it all worked. My only question
>>concerns the firewall. I have been using a commercial software program
>>firewall on my machine and it works fine, has been for quate some time. I
>>checked the software mfg's web site and they said it was ok with SP2 and
>>it is. Microsoft says its ok to turn their firewall off and I just did so.
>>I did run both firwalls for the last two days and there were no problems,
>>everything works on my system. Can I run both, is there any advantage to
>>doing it, or should I just shut the MS Firewall off and continue to use my
>>current one which works great.
>>
>> Thanks, Laurence
>>
>
>

Ken Blake
October 12th 04, 09:38 PM
In ,
Andre Da Costa > typed:

> Its kinda over kill in some cases especially since the Firewall
> in
> SP2 is both bi-directional, it checks content coming in and out


Sorry, that's not true. In that respect the firewall in SP2 is
just like the original. It monitors incoming traffic only.


> and I
> bet yours does the same, but I don't see it as a problem
> running both
> since they co-existing.


My advice is don't run two firewalls. You achieve no extra
protection, you incur the extra overhead of running two
firewalls, and you run the risk (probably small, but not zero) of
conflicts between them.


> See links:
> http://support.microsoft.com/default.aspx?kbid=842242
> http://support.microsoft.com/default.aspx?kbid=875357


See
http://www.microsoft.com/athome/security/protect/firewall.mspx

which includes the following:

Q. Should I use both the built-in firewall and a software
firewall from a different company on my Windows XP computer?


A. No. Running multiple software firewalls is unnecessary for
typical home computers, home networking, and small-business
networking scenarios. Using two firewalls on the same connection
could cause issues with connectivity to the Internet or other
unexpected behavior. One firewall, whether it is the Windows XP
Internet Connection Firewall or a different software firewall,
can provide substantial protection for your computer.

--
Ken Blake - Microsoft MVP Windows: Shell/User
Please reply to the newsgroup


>
> Andre
> "Laurence" > wrote in message
> ...
>>I have installed sp2 on my machine with no problems. Actually
>>it was
>>simple, I just let my single user computer do it all. It took
>>about 2
>>hours or so, but when I re booted, it all worked. My only
>>question
>>concerns the firewall. I have been using a commercial
>>software
>>program firewall on my machine and it works fine, has been for
>>quate
>>some time. I checked the software mfg's web site and they
>>said it
>>was ok with SP2 and it is. Microsoft says its ok to turn their
>>firewall off and I just did so. I did run both firwalls for the
>>last
>>two days and there were no problems, everything works on my
>>system. Can I run both, is there any advantage to doing it, or
>>should I just
>>shut the MS Firewall off and continue to use my current one
>>which
>>works great.
>> Thanks, Laurence

Laurence
October 12th 04, 09:39 PM
"SlowJet" > wrote in message
news:QUWad.1504$MY.605@trnddc03...
> The windows firewall is only blocking unsolicided input.
> Anything on the inside can get out by asking and since the WFW knows it is
> expecting a response, it will get one.
> i.e. Adware / spyware / keystoke recorders.
>
> PORTS? How many output ports actually get blocked by default by a 3rd
> party FW?
> Not as many as should be.
>
> I run two FW's because my 3rd party FW seems to be comfortable with the
> WFW. I put the 3rd party FW in the exception list of the WFW.
> I do this because the windows fire wall starts up long before mine is
> ready and it's called "Shields UP"
>
> I have my FW very tight. a hand full of ports open. So tight I can't ever
> get windows time.
>
> So yes, you need a 3rd party FW that blocks output ports and you need to
> close more than the default sets.
>
> Runing with WFW as an exception is dependent on your firewall make, model
> and brand.
>
> SJ
> "Andre Da Costa" > wrote in message
> ...
>> Its kinda over kill in some cases especially since the Firewall in SP2 is
>> both bi-directional, it checks content coming in and out and I bet yours
>> does the same, but I don't see it as a problem running both since they
>> co-existing.
>>
>> See links:
>> http://support.microsoft.com/default.aspx?kbid=842242
>> http://support.microsoft.com/default.aspx?kbid=875357
>>
>> Andre
>> "Laurence" > wrote in message
>> ...
>>>I have installed sp2 on my machine with no problems. Actually it was
>>>simple, I just let my single user computer do it all. It took about 2
>>>hours or so, but when I re booted, it all worked. My only question
>>>concerns the firewall. I have been using a commercial software program
>>>firewall on my machine and it works fine, has been for quate some time.
>>>I checked the software mfg's web site and they said it was ok with SP2
>>>and it is. Microsoft says its ok to turn their firewall off and I just
>>>did so. I did run both firwalls for the last two days and there were no
>>>problems, everything works on my system. Can I run both, is there any
>>>advantage to doing it, or should I just shut the MS Firewall off and
>>>continue to use my current one which works great.
>>>
>>> Thanks, Laurence
>>>
>>
>>
>
>

Laurence
October 12th 04, 09:52 PM
Thanks for the input folks, the majority go with this post, so I have turned
it off, no change in anything, Black Ice is doing its thing as before, and I
got rid of that anoying red message in by tray.

Laurence


"Ken Blake" > wrote in message
...
> In ,
> Andre Da Costa > typed:
>
>> Its kinda over kill in some cases especially since the Firewall in
>> SP2 is both bi-directional, it checks content coming in and out
>
>
> Sorry, that's not true. In that respect the firewall in SP2 is just like
> the original. It monitors incoming traffic only.
>
>
>> and I
>> bet yours does the same, but I don't see it as a problem running both
>> since they co-existing.
>
>
> My advice is don't run two firewalls. You achieve no extra protection, you
> incur the extra overhead of running two firewalls, and you run the risk
> (probably small, but not zero) of conflicts between them.
>
>
>> See links:
>> http://support.microsoft.com/default.aspx?kbid=842242
>> http://support.microsoft.com/default.aspx?kbid=875357
>
>
> See http://www.microsoft.com/athome/security/protect/firewall.mspx
>
> which includes the following:
>
> Q. Should I use both the built-in firewall and a software firewall from a
> different company on my Windows XP computer?
>
>
> A. No. Running multiple software firewalls is unnecessary for typical
> home computers, home networking, and small-business networking scenarios.
> Using two firewalls on the same connection could cause issues with
> connectivity to the Internet or other unexpected behavior. One firewall,
> whether it is the Windows XP Internet Connection Firewall or a different
> software firewall, can provide substantial protection for your computer.
>
> --
> Ken Blake - Microsoft MVP Windows: Shell/User
> Please reply to the newsgroup
>
>
>>
>> Andre
>> "Laurence" > wrote in message
>> ...
>>>I have installed sp2 on my machine with no problems. Actually it was
>>>simple, I just let my single user computer do it all. It took about 2
>>>hours or so, but when I re booted, it all worked. My only question
>>>concerns the firewall. I have been using a commercial software
>>>program firewall on my machine and it works fine, has been for quate
>>>some time. I checked the software mfg's web site and they said it
>>>was ok with SP2 and it is. Microsoft says its ok to turn their
>>>firewall off and I just did so. I did run both firwalls for the last
>>>two days and there were no problems, everything works on my system. Can I
>>>run both, is there any advantage to doing it, or should I just
>>>shut the MS Firewall off and continue to use my current one which
>>>works great.
>>> Thanks, Laurence
>
>

Ken Blake
October 12th 04, 10:52 PM
In ,
Laurence > typed:

> Thanks for the input folks,


You're welcome. Glad to help.

--
Ken Blake - Microsoft MVP Windows: Shell/User
Please reply to the newsgroup


> the majority go with this post, so I have
> turned it off, no change in anything, Black Ice is doing its
> thing as
> before, and I got rid of that anoying red message in by tray.
>
> Laurence
>
>
> "Ken Blake" > wrote in message
> ...
>> In ,
>> Andre Da Costa > typed:
>>
>>> Its kinda over kill in some cases especially since the
>>> Firewall in
>>> SP2 is both bi-directional, it checks content coming in and
>>> out
>>
>>
>> Sorry, that's not true. In that respect the firewall in SP2 is
>> just
>> like the original. It monitors incoming traffic only.
>>
>>
>>> and I
>>> bet yours does the same, but I don't see it as a problem
>>> running
>>> both since they co-existing.
>>
>>
>> My advice is don't run two firewalls. You achieve no extra
>> protection, you incur the extra overhead of running two
>> firewalls,
>> and you run the risk (probably small, but not zero) of
>> conflicts
>> between them.
>>
>>> See links:
>>> http://support.microsoft.com/default.aspx?kbid=842242
>>> http://support.microsoft.com/default.aspx?kbid=875357
>>
>>
>> See
>> http://www.microsoft.com/athome/security/protect/firewall.mspx
>>
>> which includes the following:
>>
>> Q. Should I use both the built-in firewall and a software
>> firewall
>> from a different company on my Windows XP computer?
>>
>>
>> A. No. Running multiple software firewalls is unnecessary for
>> typical home computers, home networking, and small-business
>> networking scenarios. Using two firewalls on the same
>> connection
>> could cause issues with connectivity to the Internet or other
>> unexpected behavior. One firewall, whether it is the Windows
>> XP
>> Internet Connection Firewall or a different software firewall,
>> can
>> provide substantial protection for your computer.
>> --
>> Ken Blake - Microsoft MVP Windows: Shell/User
>> Please reply to the newsgroup
>>
>>
>>>
>>> Andre
>>> "Laurence" > wrote in message
>>> ...
>>>>I have installed sp2 on my machine with no problems.
>>>>Actually it
>>>>was simple, I just let my single user computer do it all. It
>>>>took
>>>>about 2 hours or so, but when I re booted, it all worked. My
>>>>only
>>>>question concerns the firewall. I have been using a
>>>>commercial
>>>>software program firewall on my machine and it works fine,
>>>>has been for quate
>>>>some time. I checked the software mfg's web site and they
>>>>said it
>>>>was ok with SP2 and it is. Microsoft says its ok to turn
>>>>their
>>>>firewall off and I just did so. I did run both firwalls for
>>>>the last
>>>>two days and there were no problems, everything works on my
>>>>system.
>>>>Can I run both, is there any advantage to doing it, or should
>>>>I just
>>>>shut the MS Firewall off and continue to use my current one
>>>>which
>>>>works great.
>>>> Thanks, Laurence

r
October 13th 04, 02:25 AM
No advantages. Use the third-party ...

Alex Nichol
October 13th 04, 05:46 PM
Laurence wrote:

>I have installed sp2 on my machine with no problems. Actually it was
>simple, I just let my single user computer do it all. It took about 2 hours
>or so, but when I re booted, it all worked. My only question concerns the
>firewall. I have been using a commercial software program firewall on my
>machine and it works fine, has been for quate some time. I checked the
>software mfg's web site and they said it was ok with SP2 and it is.
>Microsoft says its ok to turn their firewall off and I just did so. I did
>run both firwalls for the last two days and there were no problems,
>everything works on my system. Can I run both, is there any advantage to
>doing it, or should I just shut the MS Firewall off and continue to use my
>current one which works great.

There is no advantage in using both. If your third party one does a
decent job it will be doing rather more than the Windows one, which is
really there so as to ensure a basic level of essential security


--
Alex Nichol MS MVP (Windows Technologies)
Bournemouth, U.K. (remove the D8 bit)

Google