In message <bmo93h$p7dk3$(E-Mail Removed)>,
(E-Mail Removed) writes
>Bernard Peek <(E-Mail Removed)> wrote:
>> In message <bmmiqm$7io$(E-Mail Removed)>, Adam Lipscombe
>> <(E-Mail Removed)> writes
>>
>> >I am thinking of getting a secondhand 3Com ISDN LAN modem - this is an ISDN
>> >T/A with 4 ethernet
>> >ports. It has NAT etc to hide the LAN machine IP addresses.
>> >
>> >Do I need a firewall as well or can I get good protection from configuring
>> >the TA? What are the security issues to consider?
>>
>> I haven't used that particular model but I have used an equivalent
>> broadband router. NAT will protect you against attacks originating
>> outside your network. It doesn't offer any protection against trojans
>> and gullible users so you still need personal firewalls on each machine
>> in the network.
>>
>I don't really see how a firewall protects against "trojans and
>gullible users", surely for that you need an anti-virus program such
>as McAffee (how do you spell that?).
No. You need one of those as well. A personal firewall doesn't stop you
installing a trojan but it does intercept outbound connections from
trojans that have been installed. An antivirus program might allow you
to install a program like Gator but a good personal firewall would
intercept outbound connections from Gator.
If a new virus gets loose it will only propagate if it can defeat all of
the current antivirus programs. So you can be reasonably certain that
any major virus epidemic will defeat your current antivirus program
because only viruses that can do that will cause epidemics. A personal
firewall could stop you from spreading the infection any further.
>
>FWIW I have a home network connected by an Elsa LANCOM ISDN router
>with NAT etc., I don't run any other sort of firewall and haven't had
>any problems in the several years that I have been running the system.
Your system probably is clean, but without further checks it is
impossible to be sure. I suspect most viruses and trojans are on
machines that their owners believe to be clean.
--
Bernard Peek
London, UK. DBA, Manager, Trainer & Author. Will work for money.