Forum Home
Press F1
 
Thread ID: 78186 2007-04-06 21:02:00 Hardware or software Firewall Tony.br (4018) Press F1
Post ID Timestamp Content User
538634 2007-04-06 21:02:00 I wonder if any experts could tell me this

If a person has a Hardware firewall, (such as in a router) is it still necessary or desirable to still run a software firewall like Zonealarm of Comodo
Tony.br (4018)
538635 2007-04-06 21:08:00 I do.

At the very least it can warn you if dodgy software is trying to get out to the internet.
pctek (84)
538636 2007-04-07 02:57:00 simply put, there is no hardware firewall that can stop nasty programs on your pc gaining access to the net. tweak'e (69)
538637 2007-04-09 20:36:00 Hardware firewalls cannot be aware of which processes are involved in sending any given messages. Software firewalls are extremely effective when used to limit processes running as unprivileged users and work most of the time against worms, which would have to be made more complicated to evade them, even running as an administrator.

Hardware firewalls = limited knowledge, high security
Software firewalls = greater knowledge, lower security

Note that here security refers to how well it resists active attempts to bypass filters, not how it affects overall system security, which is environment-dependent. Personally I'm not a fan of process-based firewalls as they have a massive attack surface for people trying to get around them and are not that much more effective than packet filtering but it all depends on your circumstances.
TGoddard (7263)
1