Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Kerio Personal Firewall v2.1.5 & KB951748? Kerio forum?
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
Security Software Updates - 17 July 2008 »
« IP Anonymizer For 3rd Party Apps.  
AuthorAll Replies
-


lilhurricane
Crunchin' For Cures
Premium,Mod
join:2003-01-11
Purple Zone
clubs:
·Comcast

Host:
TV over IP
Software
RCN
Inside Insight
Team Discovery
reply to redrebel
Re: Kerio Personall Firewall v2.1.5 & KB951748? Kerio forum?

said by redrebel See Profile :

I'm one of the minority that still uses KPF v2.1.5 (desktop and laptop)
You aren't the "only" one

This plus BlitzenZeus See Profile's ruleset work well for me..multiple browsers..

No issues as yet
--
~Safe Hex~ Team Discovery ~ Project Hope ~ Like A Hurricane~


NetFixer
Freedom is NOT Free
Premium
join:2004-06-24
Murfreesboro, TN
·Vonage
·AT&T Southeast
·Cingular Wireless
·AT&T CallVantage

reply to Curiosity
said by Curiosity See Profile :

Why is changing the local port range going to make DNS more secure? What is the idea behind that?
Try doing a Google or Yahoo! search for DNS spoofing and you will find a lot of answers to your question. Here is a sample link from such a search, I hope some of the results you get will match your technical knowledge level, since I don't know exactly how high or low to shoot.

From SANS Internet Storm Center: Multiple Vendors DNS Spoofing Vulnerability
--
We can never have enough of nature.
We need to witness our own limits transgressed, and some life pasturing freely where we never wander.
Test your firewall.

Curiosity

join:2001-10-01
Dawson Creek, BC

reply to redrebel
said by redrebel See Profile :

I'm one of the minority that still uses KPF v2.1.5 (desktop and laptop) and yes when I installed the dreaded KB951748 it knocked out IE and Firefox for me. Looking at my logs it was using highports for DNS resolution. I had it specifically set to only use the range of 1024-5000. Made the change to allow highports (1024-65535) and it works fine (desktop only).
Why is changing the local port range going to make DNS more secure? What is the idea behind that?


antdude
A Ninja Ant
Premium,VIP
join:2001-03-25


1 edit
reply to redrebel
said by redrebel See Profile :

I'm one of the minority that still uses KPF v2.1.5 (desktop and laptop) and yes when I installed the dreaded KB951748 it knocked out IE and Firefox for me. Looking at my logs it was using highports for DNS resolution. I had it specifically set to only use the range of 1024-5000. Made the change to allow highports (1024-65535) and it works fine (desktop only).
On the laptop I said forget it and uninstalled the patch and will wait to figure out what happens next.
Hmm, DNS? I wonder if Explorer is calling out even though I use hosts and my old Netgear RT311 router (firmware from 2002 or so). I do use LAN file sharing with a Linux/Debian box (Samba). What's the rule called for this DNS resolution?
--
Ant @ »antfarm.ma.cx and »aqfl.net. Please do not IM/e-mail me for technical support. Use the forum! Disclaimer: The views expressed in this posting are mine, and do not necessarily reflect the views of my employer

redrebel

join:2001-12-06
Oxnard, CA


1 edit
reply to antdude
I'm one of the minority that still uses KPF v2.1.5 (desktop and laptop) and yes when I installed the dreaded KB951748 it knocked out IE and Firefox for me. Looking at my logs it was using highports for DNS resolution. I had it specifically set to only use the range of 1024-5000. Made the change to allow highports (1024-65535) and it works fine (desktop only).
On the laptop I said forget it and uninstalled the patch and will wait to figure out what happens next.
Forums » Up and Running » Security » SecuritySecurity Software Updates - 17 July 2008 »
« IP Anonymizer For 3rd Party Apps.  


Sunday, 06-Dec 00:34:57 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [163] Comcast Releasing Promised Usage Meter
· [147] Avast Antivirus Has Gone Mad
· [128] Comcast Makes NBC Universal Acquisition Official
· [122] The Bandwidth Hog Does Not Exist
· [105] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [101] Google Invades ISP, OpenDNS Turf With Google Public DNS
· [85] FCC Ponders Moving From PSTN To IP Voice
· [82] Latest Consumer Reports Survey Not Kind To AT&T
· [80] New Bill Aims To Limit ETFs
· [75] Sprint Defuses GPS Privacy Media Bomb
Most people now reading
· False positive in Avast! or is it real? [Security]
· Wife might have to work in.... Iowa for a few months!!! [General Questions]
· Is there any true cure for, or way to prevent, a hangover? [General Questions]
· Windows 7 boot manager editing questions [Microsoft Help]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· [How to] Install Asterisk on an Asus WL-520GU router [VOIP Tech Chat]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]
· What is the spell hit cap for a lvl 80 full arcane spec mage [World of Warcraft]
· RG Firmware update to VDSL2 this morning [AT&T U-verse]
· How fast is your upstream internet connection? [General Questions]