What is a Firewall?
The term "firewall" illustrates a system that protects a network and the machines on them from various types of attack. Firewalls are geared towards keeping the server up all the time and protecting the entire network.
The primary goal of a firewall is to implement a desired security policy; controlling access in both directions through the firewall, and to protect the firewall itself from compromise. It wards off intrusion attempts, Trojans and other malicious attacks.
Personal Firewalls:
They are meant for the home user in a networked environment. They aim to block simple attacks, unlike the enterprise level firewalls that the corporate world uses at the server or router end. There are many ways to implement a firewall, each with specific advantages and disadvantages.
Are they really needed?
Nowadays organizations and professionals use Internet technology to establish their online presence and showcase their products and services globally. Their endeavor is to leverage digital technology to make their business work for them.
All the organizations and professionals are shifting from Dialup to broadband and getting a fixed IP. It has led to an increase in security attacks, bugs in everyday working. This does not mean that Dialup being anonymous dynamic link or the firewall of the ISP network make you pretty safe.
Now if your machine was under attack, you must have wondered what went wrong making your system crash suddenly. So I would rather like to say, it's not necessary for anyone to actually know about you or your IP address to gain access to your system.
If you system is infected or prone to intrusions, then beyond the anonymity of your Dialup connection or a dynamic IP, your system can be hacked.
Types of Attacks
Intrusion:
There are many ways to gain unauthorized access to a system. Operating system vulnerabilities, cracked or guessed passwords are some of the more common. Once access is attained, the intruder can send email, tamper with data, or use the system privileges to attack another system.
Information Theft and Tampering:
Data theft and tampering do not always require that the system be compromised. There have been many bugs with FTP servers that allow attackers to download password files or upload Trojan horses.
Service Attacks:
Any attack that keeps the intended user from being able to use the services provided by their servers is considered a denial of service attack. There are many types of denial of service attacks, and unfortunately are very difficult to defend against. "Mail bombs" are one example in which an attacker repeatedly sends large mail files in the attempt at filling the server's disk filesystem thus preventing legitimate mail from being received.
Types of Attackers
Joyrider:
Not all attacks on computer systems are malicious. Joyriders are just looking for fun. Your system may be broken into just because it was easy, or to use the machine as a platform to attack others. It may be difficult to detect intrusion on a system that is used for this purpose. If the log files are modified, and if everything appears to be working, you may never know.
Vandals:
A vandal is malicious. They break in to delete files or crash computer systems either because they don't like you, or because they enjoy destroying things. If a vandal breaks into your computer, you will know about it right away. Vandals may also steal secrets and target your privacy.
"In an incident a Trojan was being used to operate the web cam. All the activities being done in the house were being telecasted on the websites."
Spies:
Spies are out to get secret information. It may be difficult to detect break-ins by spies since they will probably leave no trace if they get what they are looking for.
A personal firewall, therefore, is one of the methods you can use to deny such intrusions.
How Firewalls work?
Firewalls basically work as a filter between your application and network connection. They act as gatekeepers and as per your settings, show a port as open or closed for communication. You can grant rights for different applications to gain access to the internet and also in a reverse manner by blocking outside applications trying to use ports and protocols and preventing attacks. Hence you can block ports that you don't use or even block common ports used by Trojans.
Using Firewalls you can also block protocols, so restricting access to NetBIOS will prevent computers on the network from accessing your data. Firewalls often use a combination of ports, protocols, and application level security to give you the desired security.
Firewalls are configured to discard packets with particular attributes such as:
Choosing a firewall:
Choose the firewalls which have the ability to ward of all intrusion attempts, control applications that can access the internet, preventing the malicious scripts or controls from stealing information or uploading files and prevent Trojans and other backdoor agents from running as servers.
The purpose of having a firewall cannot be diminished in order to gain speed. However, secure, high-performance firewalls are required to remove the bottleneck when using high speed Internet connections. The World-Wide-Web makes possible the generation of enormous amounts of traffic at the click of a mouse.
Some of the good firewall performers available in the market are below:
Most of these firewalls are free for personal use or offer a free trial period. All the personal firewalls available can't ensure 100% security for your machine. Regular maintenance of the machine is needed for ensuring safety.
Some of the tasks advised for maintaining system not prone to intrusions:
About The Author
Pawan Bangar,
Technical Director,
Birbals,India
ebirbals@gmail.com
Well, if that would have been said to me by... Read More
Computer security for most can be described in 2 words,... Read More
Microsoft routinely releases new security updates, many of which are... Read More
A friend called me one day and asked if I... Read More
Did you know...? 1 in 5 children who use computer... Read More
Threats we ordinary Web users face online leave us no... Read More
Scams involving email continue to plague consumers across America, indeed... Read More
Blaster, Welchia, Sobig, W32, Backdoor, Trojan, Melissa, Klez, Worm, Loveletter,... Read More
Before you enter your name, address or any other data... Read More
NETWORK SECURITIES: IMPORTANCE OF SECURITIESComputers and securities must form a... Read More
Despite the current wave of identity theft and corporate security... Read More
Internet is the ocean of knowledge. In this ocean you... Read More
Millions of people make purchases online, but many people are... Read More
If you know what is the 'Fishing' then it's very... Read More
High-tech private investigators are becoming the answer for many Internet... Read More
Do you really have to know how feeds work? Not... Read More
Internet scams and frauds are on the rise! The quantity... Read More
The Message Must Get Through ----------------------------- The year is 300A.D.,... Read More
This is not some new fangled techno-speak, it is a... Read More
Today the internet is a mine field of malicious code... Read More
In the past I've never really paid much attention to... Read More
Have you ever got an email asking you to confirm... Read More
What is computer security? Computer security is the process of... Read More
There you are busily typing away on your PC or... Read More
According to the Anti-Phishing Working Group (APWG) email scams also... Read More
There is no doubt that "how-to articles" have become a... Read More
First the basic definition of Spyware: It is a type... Read More
Despite the current wave of identity theft and corporate security... Read More
Have you ever bought a product or service from the... Read More
Have you seen the web site, www.freestuff.com? Or have you... Read More
"Male. Obsessed with computers. Lacking a girlfriend. Aged 14 to... Read More
Electronic Fraud and Identity Theft ----------------------------------- Human beings are pretty... Read More
Viruses, Trojans and Spyware: Protecting yourself.No user on the internet... Read More
The Federal Bureau of Investigation has identified "phishing" as the... Read More
Phishing is a relatively new form of online fraud that... Read More
Paypal is a great site and is used by many... Read More
The Message Must Get Through ----------------------------- The year is 300A.D.,... Read More
The 1998 Data Protection Act was not an extension to,... Read More
I am the victim of an internet scam. It is... Read More
A few nights ago I received an email from "2CO"... Read More
"Phishing," the latest craze among online evil-doers, has nothing to... Read More
Credit card fraud is a growing problem for online businesses... Read More
There are ways to insure security though. You can get... Read More
The Loss Prevention Manager should be receptive to the needs... Read More
The trash folder in my main inbox hit 4000 today.... Read More
Yes, I'm wearing my encryption hat again. Why you may... Read More
Identity theft is one of the most common criminal acts... Read More
Much has been said on the theory of password protection... Read More
High-tech private investigators are becoming the answer for many Internet... Read More
What is a Firewall?The term "firewall" illustrates a system that... Read More
|