  JTM1051 MVM join:2000-07-08 Moorpark, CA
| said by ThatsTheQuestion :
But how many of those known vulnerabilities in older ZA versions are inbound vulnerabilities that actually allow some form of malicious traffic to breach the firewall from outside? If you really want to know check out some of the security sites; e.g., Secunia Advisories by Product.
The essence of my reply was the recommendation of using a modem or router with a good SPI Firewall for the first line of defense for inbound protection, rather than just relying on a software firewall.
The "There are some known vulnerabilities with older versions of ZA firewalls." was separate "FYI" comment in case OP was not aware and may want to investigate further.
...Most of the vulnerabilities I know of have to do with the outbound protection side, which should be much less important, since if you let malicious code run on your system you cannot be sure any software will contain it. True, hence is exactly why I noted "... monitoring/restricting outbound traffic." and not outbound protection.  |