arTech
Topic Starter
I tried to make this Topic on Discussion Forum: Security - Best Practices and Prevention, but not have permission.
Firewalls are generally used to prevent unauthorized access to computers or networks and it is a obligatory tool against malware infections.
If you are not happy with Windows firewall and want to spend some money for brand pro firewall please read first Gibson Research Corporation (GRC) thinking and recommendation.
Hardware Firewalls/NAT (Network Address Translation) Routers
“External firewall and NAT router appliances provide excellent "natural protection" from external intrusion hacking. For systems where a NAT router makes sense (i.e. multiple machines sharing a single Internet connection) we highly recommend the use of a good NAT router. There is no better and more secure solution than running a single, external, NAT router — providing redundant external intrusion protection — coupled with copies of the FREE ZoneAlarm firewall — providing the PC industry's most comprehensive internal extrusion management. The money you save by running the free ZoneAlarm firewall on multiple computers more than pays for a NAT”! – GRC
GRC goes further – “With a NAT router protecting your connection to the Internet — even if you only have one computer on the LAN behind the router — none of the Internet scanning and worms and hackers and other annoying and malicious Internet nonsense can get to your computer”.
More details about NAT:
1. NAT performed by the router allows multiple computers (machines) connected to the LAN behind the router to communicate with the external Internet.
2. One of the key benefits of NAT routers is that the router appears to the Internet as a single machine with a single IP address. This effectively masks the fact that many computers on the LAN side of the router may be simultaneously sharing that single IP.
3. All NAT routers inherently function as very effective hardware firewalls. As a hardware firewall they prevent "unsolicited", unexpected, unwanted, and potentially annoying or dangerous traffic from the public Internet from passing through the router and entering the user's private LAN network.
4. Since the NAT router links the internal private network to the Internet, it sees everything sent out to the Internet by the computers on the LAN. It memorizes each outgoing packet's destination IP and port number in an internal "connections" table and assigns the packet its own IP and one of its own ports for accepting the return traffic. Finally, it records this information, along with the IP address of the internal machine on the LAN that sent the outgoing packet, in a "current connections" table. When any incoming packets arrive at the router from the Internet, the router scans its "current connections" table to see whether this data is expected by looking for the remote IP and port number in the current connections table. If a match is found, the table entry also tells the router which computer in the private LAN is expecting to receive the incoming traffic from that remote address. So the router re-addresses (translates) the packet to that internal machine and sends it into the LAN. If the arriving packet does not exactly match traffic that is currently expected by the router, the router figures that it's just unwanted "Internet noise" and discards the unsolicited packet of data.
arTech
Firewalls are generally used to prevent unauthorized access to computers or networks and it is a obligatory tool against malware infections.
If you are not happy with Windows firewall and want to spend some money for brand pro firewall please read first Gibson Research Corporation (GRC) thinking and recommendation.
Hardware Firewalls/NAT (Network Address Translation) Routers
“External firewall and NAT router appliances provide excellent "natural protection" from external intrusion hacking. For systems where a NAT router makes sense (i.e. multiple machines sharing a single Internet connection) we highly recommend the use of a good NAT router. There is no better and more secure solution than running a single, external, NAT router — providing redundant external intrusion protection — coupled with copies of the FREE ZoneAlarm firewall — providing the PC industry's most comprehensive internal extrusion management. The money you save by running the free ZoneAlarm firewall on multiple computers more than pays for a NAT”! – GRC
GRC goes further – “With a NAT router protecting your connection to the Internet — even if you only have one computer on the LAN behind the router — none of the Internet scanning and worms and hackers and other annoying and malicious Internet nonsense can get to your computer”.
More details about NAT:
1. NAT performed by the router allows multiple computers (machines) connected to the LAN behind the router to communicate with the external Internet.
2. One of the key benefits of NAT routers is that the router appears to the Internet as a single machine with a single IP address. This effectively masks the fact that many computers on the LAN side of the router may be simultaneously sharing that single IP.
3. All NAT routers inherently function as very effective hardware firewalls. As a hardware firewall they prevent "unsolicited", unexpected, unwanted, and potentially annoying or dangerous traffic from the public Internet from passing through the router and entering the user's private LAN network.
4. Since the NAT router links the internal private network to the Internet, it sees everything sent out to the Internet by the computers on the LAN. It memorizes each outgoing packet's destination IP and port number in an internal "connections" table and assigns the packet its own IP and one of its own ports for accepting the return traffic. Finally, it records this information, along with the IP address of the internal machine on the LAN that sent the outgoing packet, in a "current connections" table. When any incoming packets arrive at the router from the Internet, the router scans its "current connections" table to see whether this data is expected by looking for the remote IP and port number in the current connections table. If a match is found, the table entry also tells the router which computer in the private LAN is expecting to receive the incoming traffic from that remote address. So the router re-addresses (translates) the packet to that internal machine and sends it into the LAN. If the arriving packet does not exactly match traffic that is currently expected by the router, the router figures that it's just unwanted "Internet noise" and discards the unsolicited packet of data.
arTech