firewall protection, or over-protected?

edited March 2007 in Science & Tech
I have a question about what combination of firewalls is approporiate, and which are redundant or not needed.

I have a PC with windows XP Pro. So it comes with the windows firewall. I know this is only inbound protection. So I can install Zone Alarm and get protection both ways. Does this mean I should disable the windows XP firewall? Or does that not really matter? Will having 2 firewalls slow my connection down a bit?

And then what my DSL Router. It has a hardware firewall built-in. Is that protection enough for outbound, such that I don't need to install Zone Alarm? I'm not big on adding more software to the PC than absolutely necessary.

So which combination of these three things makes the most sense:
- windows XP firewall
- Zone Alarm
- D-link router DI-704 with firewall

???? I'm confused!!!!

-Max

Comments

  • ThraxThrax 🐌 Austin, TX Icrontian
    edited March 2007
    If you have a hardware firewall (Router), there's virtually no need for a software firewall. It's the best inbound protection you can have. If you're hung up on outbound, which some people are (They like knowing what's connecting -- I'm one of those people), Zone Alarm is good, but you should disable Windows firewall.
  • RobRob Detroit, MI
    edited March 2007
    Having a software firewall is super important. It becomes noticeable when your buddy that surfs pr0n all day comes by to lan and leaves some nasties behind. Anything that can be brought into the local network has to be considered as well.

    I would leave the ZA and drop the windows firewall. If your an installed app nazi, then reverse the statement either is fine for most.

    If it helps once in two years, it was worth it in my opinion and the ZA shouldn't get in the way too much. Yes, this is the exception to "virtually no need" but that's where I always seem to get bitten.

    It should not affect your network speed enough to notice.
  • KwitkoKwitko Sheriff of Banning (Retired) By the thing near the stuff Icrontian
    edited March 2007
    I use ZoneAlarm purely for outgoing protection. A lot of legitimate programs "phone home," and that bothers me.
  • RobRob Detroit, MI
    edited March 2007
    Kwitko wrote:
    I use ZoneAlarm purely for outgoing protection. A lot of legitimate programs "phone home," and that bothers me.

    If it is legitimate, then why is it a bother?
  • ThraxThrax 🐌 Austin, TX Icrontian
    edited March 2007
    Because there's no need for a legitimate program to be contacting a home server for any reason. There's no telling what kind of information is transmitted in those packets. Paranoia is better than disclosure.
Sign In or Register to comment.