Precisely. Computers & related hardware do what we tell them to do. Now, there is a difference between doing what we tell it and doing what we want. Bottom line, unless there is a bug in the product, or you are a dumbass and misconfigure the device, the rule will work. This is another reason why you lab test equipment before deploying it.Quote:
If that were the case, we'd call them Firewall Suggestions, and not Firewall Rules.
Having more than one AV *could* cause issues. I had a user with NAV and MacAfee installed on his laptop. The combonation of the two caused the machine to crawl. In effect, the damn thing was being DoSed by its own software. In addition, like another user posted, each saw the other's quaranteen folder and a vicious circle of false positive infections were being logged.
Dialup users should use a software firewall. Sure, this is perfectly sound advice. Telling a dialup user to add 10 other things is *not* sound advice - it's stupidity. Some may argue that it is layered protection but if you add a ton of crap, you'll have to be technically savvy in order to make everything work togther (if possible). If you have this level of skill to begin with, you clearly wont need all the additional crap clogging up the works.
Any decent mid range Cisco switch has VLAN capabilities. I happen to deploy Cisco gear but other manufacturers also have VLAN capabilities. You wont find this feature on a device made for home users.
Configuration of a software firewall is not easier than a cable/dsl router. All you do is plug in the wires and *maybe* add auth credentials (based on your ISP) and off you go. The Linksys router is ready to go out of the box. NATing by itself, will take care of 90% of the crap that will bang against your home network.
Though I respect many of the people who posted content to this thread, I have to go with JP on most if not all counts. Anyone who has been in this business for more than a decade can tell you that there are many folks out there spitting out advice without truly understanding the implications. I run into this each and every day.
One last thing, AngelicKnight , when someone like JP disagrees with your position and more or less calls you a butthead on a public forum, I'm not exactly sure that you should feel honored that he responded. Just a thought.
:)
