Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Equipment Support » Hardware By Brand » Westell » question FOR N O Y B about firewall settings
Search Topic:
Uniqs:
426
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
AuthorAll Replies
-

acuariano
Premium
join:2004-10-27
Woodside, NY
·Verizon Online DSL

reply to acuariano
Re: question FOR N O Y B about firewall settings

ok i followed your instructions and everything shows stealth in shields up...
--but now i went to another site to take a test [pc flank]..
all test shos stealth..and last one."PCFlank Leaktest "there you type any name or word..
and i got "your firewall has failed the test,your firewall is leaky.
HAVE YOU ever tried this test?

acuariano
Premium
join:2004-10-27
Woodside, NY

1 edit
reply to acuariano
ok thanks a lot for your help and time.


N O Y B
St. John 3.16

join:2005-12-15
Forest Grove, OR

1 edit
reply to acuariano

Select and apply custom.
Then edit custom and paste in the rules for inbound and outbound, and apply them.

As for speed, run a comparison speed test. Doubt you will see any meaningful impact.


acuariano
Premium
join:2004-10-27
Woodside, NY
·Verizon Online DSL


2 edits
reply to acuariano
hi N O Y B..thanks for your responce.
this is still a littel confuse for me.in the first picture i posted which option should i "check"-custom-no security-minimun security[low]--typical security[mediun]--or maximun security[high]

then you said you prefer this set

1.- Inbound Firewall Rules - Medium
Deny All Inbound Packets That Are Not Explicitly Permitted or Do Not Have a Matching Session State Table Entry (Unsolicited)

title [ Security Level Custom (Medium) IN rules ]begin# Drop and Log Packets with Time to Live (TTL) of 0 or 1TTL#drop match 3 8 { 01:FE } >> done, alert 4 [TTL of 0 or ......etc,etc

2.-Outbound Firewall Rules - Low
Permit All Outbound Packets That Are Not Explicitly Denied

title [ Security Level Custom (Low) OUT rules ]begin# Protocol Match conditions# Internet Control Message Protocol# Pass Specific ICMP Types, Drop and Log all other ICMP Types .....................etc,etc

and BTW ..harden security affects connection speeds???


N O Y B
St. John 3.16

join:2005-12-15
Forest Grove, OR


2 edits
reply to acuariano
Personally I like the second set better, with Inbound Firewall Rules - Medium and Outbound Firewall Rules - Low. »Re: Harden Your Westell 327 Firewall

After applying run shields up to verify.

As for Window firewall, this is up to you. But if you use public access hot spots etc. then definitely leave it enabled.

--
Be a Good Netizen - Read, Know & Complain About Overly Restrictive Tyrannical ISP ToS & AUP »comcast.net/terms/ »verizon.net/policies/
Say Thanks with a Tool Points Donation

acuariano
Premium
join:2004-10-27
Woodside, NY
·Verizon Online DSL


1 edit
Click for full size
Click for full size
Click for full size
hi N O Y B ..since i can't replyy to an old good post you made
»Harden Your Westell 327 Firewall

i was reading carefully about your instructions.
i used firewall software,but now i need to cut down in ram-resources and i found that westell provide a good solid router firewall,since i can not reply to that ol post and westell 327w firmware has been updated.
i want to confirm that your first post is still the best methos for harden the firewall,and now i just set the firewall to medium security..
DO I JUST need to copy.paste the "inbound/outbound" rules from your first post ??..and can this rules be used in all modes custom,none,low,mediun,high??
---------what about the windows firewall from xp..it should set to on or off??
PLEASE ..let me know,i want to make sure about how to make the changes.
thanks.
Forums » Equipment Support » Hardware By Brand » Westell


Wednesday, 02-Dec 01:29:56 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [140] Comcast Releasing Promised Usage Meter
· [69] Baltimore To Ban Lazy Cable Installs
· [56] Broadband Killed The Game Console
· [53] Latest Consumer Reports Survey Not Kind To AT&T
· [50] Rogers Unveils The ISP Dream Model
· [41] Rural Carriers Quickly Embracing Fiber
· [37] ACTA: Global Three Strikes
· [35] Charter Exits Chapter 11
· [33] AT&T Top Lobbyist Cicconi Has His Feelings Hurt
· [25] Vivendi Agrees, Comcast/NBC Deal Soon
Most people now reading
· Download speeds very slow. [AT&T West]
· IMG 1.7 (IMG Updates and Discussion) [Verizon FIOS TV]
· 16% packet loss. damn dsl. los angeles [AT&T West]
· Windows 7 boot manager editing questions [Microsoft Help]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]
· Considering Leaving Vonage, who should I Consider? [VOIP Tech Chat]
· [Newsgroups] Newzleech down? [Filesharing Software]
· Am I the only one that loves to work in IT? [No, I Will Not Fix Your #@$!! Computer]
· [Snow Leopard] NFS Mounts - no more Directory Utility [All Things Macintosh]
· netTalk tk6000 [VOIP Tech Chat]