PDA

View Full Version : just another security related thread


Velimir
07-22-2005, 05:58 PM
greetings,

:hrmm: ok... I have been beta testing Kaspersky Internet Suite - KIS2006 (av, antispyware, firewall) on one of my computers so I just wanted to start another security related thread.

i quite liked what i see, although it is all the time image -> install interaction...

on the other machine I have installed NOD32 2.5 and Outpost 2.7 and also like the results very much. I already expressed my feelings that at one point NOD32 and OutPost will in some way "merge" their programs and we'll get another integrated solution. (not mentioning some other more popular/bad ones :EG: -- hint: yellow) both NOD32 and Outpost are final versions, not betas unlike KIS.

and now I have just read that Microsoft has started to beta test another integrated solution OneCare (av, anti spyware, firewall...) so I hope I will be able to beta test also :wink:

I am on DSL connection, with Siemens DSL Modem / NAT Router with built in firewall in front of my computer so I guess that is another good level of protection.

ok, now where do we stop? where is the end of security related concernes? does all this solutions makes our lifes easier and safer, or only easier or safer?

I am also using SecureCRT, SecureFX and some others to connect to my site here, I am reading webmail over https, soon we'll have https CNC... so yes security has become major issues, but in my eyes a heavy burden, our own cross.

I asked myself many times am I too paranoid?, do I really need to click that button every time?, this port allow, that port allow, no, did I allow too much. ok lets erase and start from beginning... it has become a drag, still fun, still keeps me awake sometimes, but a drag...

is there OUT of the BOX experience that may satisfy security needs, usability needs, simlicity needs and so on...

I appologies if my english is not so good, but I hope you got my points(s)...

Regards,
vee

Kevin
07-22-2005, 06:05 PM
Actually, you sound less paranoid than I am. I have an OpenBSD box between my internet connection and the rest of my computers to make sure nothing bad can get in. I even have this rule setup on it:
block return in on de0 proto tcp from any os "Windows" to any port 80
That rule blocks any attempt by my one windows box to communicate to any web sites at all. Since I never use my windows box for surfing it doesn't affect me and it prevents any program that I do install from pulling down ads or spyware.

louyovin
07-22-2005, 10:19 PM
Actually, you sound less paranoid than I am.
If you are REALLY paranoid:
1. Boot a Knoppix CD and do your Internet from there, very difficult to do any mischief to a CDROM. You can save your settings on a FLASH drive.
or
2. If you are running Windows, and have a reasonably fast machine and 512 meg (1G is better) of RAM, install VMWare or Virtual PC and do all your on line stuff in there. When you shut down, undo any changes in VPC or just use the latest snapshot in VMWare.
Either way, you don't need to worry about malware of virii. I do have a hardware firewall to protect the base system.

VMWare rocks, I do all my development in one virtual guest OS and testing in another. Wipe out the system or registry? Just undo.

I guess if you are REALLY, REALLY paranoid :-)
You can boot a Knoppix CDROM (now they have a DVD) in a virtual machine.