| ||||||||||||||||||||||||||||
|
Thinking Outside The (Windows) Box, While many businesses depend on Microsoft and its various product suites, alternatives exist, some of which are not well known. Part four of this series examines free windows firewalls.
We tried the free-for-personal-use NetVeda Safety.Net desktop firewall, v3.61.0002, on Windows XP SP2. A Safety.Net Professional license ($39.99) can be purchased for business use. Safety.Net also runs on Windows 95/98/ME/NT/2000, requiring a minimum 64 MB RAM (256 MB recommended for home office environments).
Built-in and custom Groups are used to control Service definitions. For example, "FTP" means outbound access to TCP ports 20 and 21, while "FTP server" means inbound access to these ports. These Group definitions hide network details under intuitive labels, simplifying policy configuration without sacrificing flexibility for advanced users. However, we found Services in an Application Control List with neither "Full Access" nor "No Access" confusingour tests showed that those Services were allowed unless blocked by a network rule, but this could be explained better in documentation. Safety.Net User/Host policies can also enforce restrictions on internet access time and web content (i.e., ads, cookies, active code, or censored content, based on Platform for Internet Content ratings). These features (not tested) go well beyond the typical free personal firewall. Time and content filtering are mostly applicable to workgroup installations where the firewall Administrator wants to limit other users (e.g., home networks with children). Because content filtering impacts performance, it is nice that options can be used to adjust or disable filters that you don't plan to use. However, all rules apply to traffic passed between the list of "Internet" adapters and the list of "LAN" adapters. This means that exceptions must be based on IP address, not adapter (e.g., you cannot allow DHCP on wireless but not broadband if both are "Internet" adapters). NetVeda's monitoring capabilities are informative, but less user-friendly than its configuration capabilities. There is no "at a glance" dashboard to get a quick feel for activity. A pair of Application and Network Activity Reports provide real-time session status lists; the Network report can also show history. Firewall blocking actions are visible through configurable pop-up alerts and an on-going Alerts Report. These detailed reports are aimed at administrators, but not end users who are likely to wonder whether a blocked connection by "alg.exe" on port 1025 is normal or worrisome. Overall, NetVeda is very full-featured for a free personal firewall. If you happen to be looking for an Internet Connection Sharing workgroup firewall, NetVeda is a good choice. Multi-user hosts especially can benefit from free extras like content filtering. But if you want a very simple entry-level single host firewall, NetVeda may prove to be a little complicated.
|
|
||||||||||||||||||||||||||
|
|
||||||||||||||||||||||||||||