The term "Firewall" applies to Software or Hardware that protects your internal network or computer from external attacks.

Software firewall solutions for small business and residential use are programs that reside on your network or computer system and protect you from unauthorized access that originates from outside your network or from the Internet (some firewalls also prevent unauthorized programs to establish outbound connections as well.)

Many hardware manufactures offer "Broadband Routers" that provide the home and small business user with "SP1 Firewall Capabilities" bundled with Internet connection sharing capabilities. These devices have basic firewall capabilities that offer small networks connected to high-speed Internet firewall protection.  Some Routers have other security features such as "Parental Controls", built-in "Antivirus" options" and "VPN" options.

If you have not tested your computer for vulnerabilities, use this link to access the "Shields Up" website and do a security probe on your system to check for existing vulnerabilities..  

 

Software Firewalls

Windows XP Professional, XP Home and Windows Vista all have a built-in firewall capabilities.

NOTE: The windows firewall was improved in Windows Vista and now not only protects against unauthorized incoming attacks but also helps protect you by restricting other operating system resources if they behave in unexpected ways which may indicate the presence of malware or another type of infection.

If you are still  running XP SP1 you may need to enable the XP built-in firewall.

There are quite a few commercially available Firewall programs on the market.

There are free firewall programs the best of which is the free firewall version of Zone Alarm (available for download on the internet) for home computer systems.  The program set-up will automatically detect programs like "Internet Explore" and configure the firewall settings accordingly. Zone Alarm requires some configuration and training in order to provide internet access to all other relevant computer programs. 

McAfee and Black Ice also produce effective software based firewall programs.   

"Zone Alarm" does a very nice job of protecting a Home computer system. Zone Alarm recognizes standard programs requiring access to the Internet but may also require the user to allow other programs access through the firewall, Once you have the program configured for your use it runs in the background and provides protection from attacks. One of the best features of the "Zone Alarm" firewall program is that it is FREE for personal home use.

To Download the FREE version of Zone Alarm just click on the link below and select "Download Now" from the "cnet" web site

Download Zone Alarm

Hardware Firewalls

True Hardware Firewall Solutions are usually implemented in the business or enterprise network world and have a wide price range

NAT/Gateway Broadband Routers available on the consumer market today provide basic firewall protection for internal networks while allowing all computers on the network to access the Internet via one high-speed Internet connection.  Many devices also offer features such as "Parental Controls", "Antivirus", VPN, and other customizable security features.

NAT (Network Address Translation)

"NAT" allows the Router to translating messages and requests sent from the address of your computer on the internal network, to servers that exist on the Internet and then translating the reply from the server's address, on the Internet, back to the address of your computer's internal network address.

A Router is basically a very small computer system designed for specialized tasks such as passing information from computers located on one side of the Router to the Internet network on the other side of the Router.

The Router connects to the Internet and then accepts all requests for Internet information from computers on the internal network. The Router forwards the requests to the appropriate web server and then passes the information received from the web server to the computer that made the initial request in the first place.  Because the Router is the unit making the request to the Internet, the router appears to be the only computer at your location.

If a hacker runs a scanning program on the internet looking for vulnerable computers, the only computer the scanner will find will be the router which acts as a wall between the Internet and your internal network (unless you have the need to run services such as a web server. Some port configuration may be required to provide open connections through the router in order for clients to access services.)

NOTE: Many Internet games and chat programs will require some custom configuration of the router in order to function properly as well.  

Most Routers are managed and configured via a web interface. To access the operating system of the Router the user can open Internet Explorer and type in the IP address of the Router (i.e. 192.168.0.1) and the displayed web page allows the user to change settings and configurations of the Router.

The Following Links are for some of the most well known manufacturers of Routers.

Linksys Wired Routers

Linksys Wireless Routers

D-Link Routers

SMC Barricade Routers

 

Hardware Firewall Appliances

Symantec Firewall/VPN Products  (This document is in PDF format and requires the Adobe Acrobat Reader in order to view the document) You can download the reader program "here".

D-Link Firewall/VPN Products

If you would like more information on any of the Security solutions presented on this page, contact James Tripp at Cybertex Computer Services for further information or to book a consultation.

webmaster@cybertex.ca
Copyright © 1999 [Cybertex Computer Services]. All rights reserved.
Revised: March 04, 2008