I was using Blackice Server for my 2000 box but after reading a few articles and then testing a few things on it, I changed my mind and decided to switch over to "Tiny"

Tiny -- "i like because it lets you use Ip /port based rules and application-based and it is fairly easy to configure"