Internet.com ISP-Planet
Search ISP-Planet


Search internet.com
internet.com

IT
Developer
Internet News
Small Business
Personal Technology
International

Search internet.com
Advertise
Corporate Info
Newsletters
Tech Jobs
E-mail Offers

internet.commerce
Partner With Us














ISP Technology

 

General

Thinking Outside The (Windows) Box,
Part 4: Free Windows Firewalls—Primedius Firewall Lite

While many businesses depend on Microsoft and its various product suites, alternatives exist, some of which are not well known. Part four of this series examines free windows firewalls.

by Lisa Phifer
VP Core Competence, Inc.
[March 3, 2006]
Email a colleague

At the opposite end of the bells-and-whistles spectrum lies Primedius Firewall Lite. We tried Primedius Firewall Lite v1.0.0.1 on Windows XP, where it consumed just 1.34 MB of disk space and 1 MB RAM. This simple, free application firewall also runs on Windows 2000.

Primedius Firewall Lite
www.primedius.com
Primedius Corporation
San Jose, CA

Primedius Firewall Lite

With Primideus, what you see is (almost) what you get. In fact, the installer doesn't even auto-launch Primideus. This start-up option, and all firewall rules, must be explicitly configured after manually starting the firewall program.

Click to view larger imagePrimideus Lite does little more than permit, deny, or prompt when applications use Windows sockets. Rules can be populated by accepting prompts when applications try to use Winsock, or by manually adding programs through the Basic Firewall configuration panel (see figure at right). Unlike other firewalls reviewed here, Primideus can only enforce black-or-white program rules.

If an application is allowed, it can use any TCP or UDP port to any destination. If an application is denied, it cannot use sockets, period. Or you can choose to be prompted each time a given application tries to open any port. The basic but easy-to-read Program Log lets you eyeball every allow, deny, or prompt action taken.

However, we found that these rules depend to some degree on how a program is invoked. For example, we manually added a rule to allow C:\Windows\System32\Telnet.exe. But when we ran "telnet 10.0.0.1" from a command window, Primideus considered that to be a different program, prompting us to create a new rule. Programs like Internet Explorer, consistently invoked with the same shortcut, path, and arguments, can be controlled by a single rule. This could help you spot a trusted program being invoked in an unusual way (e.g., by a trojan), but makes it awkward to control programs with variable arguments.

Moreover, programs that use lower-level interfaces, like Ping and Nmap, were permitted even when explicitly "denied" by Primideus program rules. In fact, except for Messenger Pop-Ups, Primideus Lite does not appear block any unsolicited inbound traffic. During a port scan, the Primideus Firewall Log showed incoming packets passing through hidden rules that cannot be configured in the Lite version (see figures below). But they can be configured in Primedius Firewall Pro ($39.99), a commercial upgrade that also supports Interface/ Protocol/ IP/ Port-based firewall rules.

Click to view larger image
Click to view larger image

We were initially attracted by the simplicity of the Primideus user interface. However, given Lite's glaring network firewall omissions, we cannot recommend using it alone. But you might consider running Primideus Lite in conjunction with the free Windows XP SP2 firewall. XP can block inbound traffic; Primideus can control outbound traffic from local programs. We briefly tried this, and it seemed to work. But we did not exhaustively test that combo; conflicts often exist between any two firewalls. In short, if you just want free, simple program control, then give Primideus Lite a try. If you need a full-featured personal firewall, then find another program.

 

Free Windows Firewalls: Primedius Firewall Lite

 

 

 

ISP Glossary
Find an ISP Term

Newsletters!
ISP-Planet Weekly

Best of ISP-Planet

 

Feedback


Advertising inquiry? Click here!

ISP-Planet's RSS feed

internet.comearthweb.comDevx.commediabistro.comGraphics.com

Search:

Jupitermedia Corporation has two divisions: Jupiterimages and JupiterOnlineMedia

Jupitermedia Corporate Info

Legal Notices, Licensing, Reprints, Permissions, Privacy Policy.
Advertise | Newsletters | Tech Jobs | Shopping | E-mail Offers

Whitepapers and eBooks

Intel Whitepaper: Comparing Two- and Four-Socket Platforms for Server Virtualization
IBM Solutions Brief: Go Green With IBM System xTM And Intel
HP eBook: Simplifying SQL Server Management
IBM Contest: Are You the Next Superstar? Join the "Search for the XML Superstar" Contest to Find Out
Microsoft PDF: Top 10 Reasons to Move to Server Virtualization with Hyper-V
Microsoft PDF: Six Reasons Why Microsoft's Hyper-V Will Overtake Vmware
Microsoft Step-by-Step Guide: Hyper-V and Failover Clustering
Intel PDF: Quad-Core Impacts More Than the Data Center
Intel PDF: Virtualization Delivers Data Center Efficiency
Go Parallel Article: PDC 2008 in Review
Microsoft PDF: Top 11 Reasons to Upgrade to Windows Server 2008
Avaya Article: Communication-Enabled Mashups: Empowering Both Business Owners and IT
Intel Whitepaper: Building a Real-World Model to Assess Virtualization Platforms
  PDF: Intel Centrino Duo Processor Technology with Intel Core2 Duo Processor
Microsoft Article: Build and Run Virtual Machines with Hyper-V Server 2008
Go Parallel Article: Q&A with a TBB Junkie
IBM Whitepaper: Innovative Collaboration to Advance Your Business
Internet.com eBook: Real Life Rails
IBM eBook: The Pros and Cons of Outsourcing
Internet.com eBook: Best Practices for Developing a Web Site
IBM CXO Whitepaper: The 2008 Global CEO Study "The Enterprise of the Future"
Avaya Article: Call Control XML in Action - A CCXML Auto Attendant
IBM CXO Whitepaper: Unlocking the DNA of the Adaptable Workforce--The Global Human Capital Study 2008
Adobe Acrobat Connect Pro: Web Conferencing and eLearning Whitepapers
HP eBook: Guide to Storage Networking
MORE WHITEPAPERS, EBOOKS, AND ARTICLES