Win firewall
17 min read
I don't know what you mean by no outbound monitoring. Windows Firewall is a two-way firewall, and an excellent firewall at that. Should you reset it if you don't know what you are doing? I think that would be a good idea regardless, then let Windows Firewall manage itself - it knows how, and is fully capable. All my Windows 7 systems here have been using Windows Firewall since first built over 3 years ago - with no problems. Windows Firewall is a good, solid, basic firewall. And that's all you need.My question is, although there is no outbound monitoring, would it be a sound idea to reset the firewall to default occasionally so that it would ask me if I want to allow programs rather than trying to set them when I don't know what I am doing?
If you otherwise "practice safe computing", you will be fine. That is, if you, the user and always the weakest link in security:
Keep Windows updated and patched,
Use a decent, real-time and updated anti-malware solution and firewall,
AND
You don't invite the badguys in by participating in illegal filesharing via torrents or P2P,
You are not "click happy" with unsolicited downloads, attachments, links and popups.
Note WPA-2 only involves computers connected via wireless. Computers connected via Ethernet don't use wireless encryption. If you got a real Trojan, your anti-malware solution let it through. Firewalls block ports, they don't scan for malware.I currently have the Windows firewall behind a router which I feel is secure as it is set to WPA - 2 with good passwords and keys.
I recently got a Trojan which Windows Defender was able to remove from quarantine.
I used ZoneAlarm for years with XP (never went to Vista) but it became too bloated, bogged down my system, and they kept trying to get me to into their whole security suite. So I went to Comodo when it started to make a name for itself. It had a high learning curve, and was heavy on resources. And they too tried to get me to into their whole security suite.
Remove from quarantine? What do you mean? The suspect file was already in quarantine? Or did you mean WD quarantined it?got a Trojan which Windows Defender was able to remove from quarantine
I agree. All the hoops and hollers about the Windows Firewall in XP was blown way out of proportion by the anti-Microsoft crowd - fueled by the very aggressive ZoneAlarm marketeers.It was the XP firewall that only monitored inbound traffic and that is all I use when on XP.
The fears something might "call home" with your personal information totally ignored the fact the bad code first had to get to your machine on your network, past the incoming Firewall, past the anti-malware program on the way in, then become active and unnoticed by your anti-malware solution on the way out.
I too thought Comodo was too annoying and difficult. It worked, but way too much user involvement required.
The problem with XP's firewall is that it was not enabled by default. A decision made because when XP first came out, most home computers were not connected to a network/Internet (except maybe by dial-up modem). And most business computers were connected to a LAN, with IT support and a firewall through the "gateway server" or business class router.
No one, I mean really no one predicted how rapidly broadband to the home would spread resulting in an explosion of Internet use. And no one predicted how prolific the Internet would be for the badguys, or how easy it would be to exploits its gullible users.
In SP2, it was enabled by default - but remained one-way. Vista's Windows Firewall was two-way.
And so does Windows 7 and Windows Vista. And Vista came out 8 years ago.***I did not know the Win 8 native firewall was a two way firewall but that is great to hear!
That's why Bing Google is a good friend to have.
>>True, I have worn them out. I also watch the videos in both as to how something works.
When I got a Trojan, it must have been the poorly set firewall and weak router as Defender did its job and caught it. It also allowed me to remove it. My router has strong passwords and keys and uses AES . It is set as WPA2-PTSK.
They say to broadcast the SSID. Do you agree?
No. As I noted earlier, firewalls block ports, they don't scan for malware. Neither do routers. And on the wireless side, AES and WPA encryption have NOTHING to do with you getting a Trojan. They help block users from hacking into and using your network.When I got a Trojan, it must have been the poorly set firewall and weak router
Also, just to be sure, note that Windows Defender is an anti-spyware program. It is not a full anti-malware program, which you should be using. If you are using MSE, it will disable WD as it is no longer needed.
Well I don't know who "they" are so I don't know what they were referring to. However, broadcasting or not broadcasting does not make you safer, one way or the other.They say to broadcast the SSID. Do you agree?
Win 8 does not have MSE; it is called Defender in this latest OS [Win 8 Pro].
I broadcast SSID as it makes no difference except harder for me to find when I need to with another pc.
So, Defender(old MSE) is the weak link. I need to figure a way to beef up the a/v protection.
Would it be prudent to buy MBAM, enable its real time protection and let Defender run without Real Time Protection.
I have the entire Norton security Suite available at no cost through Comcast but really do not want it, free or not.
I'm sure that Digerati will be able to advise in greater detail but the standard installation of Win 8 includes the new Defender (based on MSE anti virus and anti spyware engine)
Operating via the hardware firewall (in your Router) and with the Windows Firewall set to "on" and with the Microsoft Defender/MSE as standard the protection you have is quite reasonable as it is (in any event this is what I use on my own personal Win 8 machine…….
You did mention the following in your last post
.So, Defender(old MSE) is the weak link. I need to figure a way to beef up the
a/v protection
I don't agree that the Defender/MSE is the weakest link….. at least I'm happy with the level of protection it provides….. the weakest link is often to be found sitting at the keyboard…. (I don't mean you Peter) but it's generally the operator of the computer that can be the weakest link.
However if you feel that you would be safer using Norton or McAfee or any of the other well known anti virus products that are available, then don't let me persuade you otherwise….. its your computer and you need to feel comfortable that you have made the correct choices….
Regards
paws
Ask AI
AI can make mistakes. Check the cited posts. Archived advice can be out-of-date
Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI