Technology Get the latest on technology, electronics and software…

Question for the computer security experts

Thread Tools
 
Old Dec 22, 2006 | 11:58 AM
  #1  
whynot's Avatar
Thread Starter
X spots the mark
 
Joined: Dec 2005
Posts: 1,519
Likes: 0
From: Concrete jungles
Question for the computer security experts

I've been using the Zonealarm security suite for a while, have the latest version 6.5. Last night I decided to scan ports 1-1250 and it turns out that at least 3 ports were open! wtf! The settings in zonealarm seem to be right, internet zone security is set on high. Why aren't all the ports stealthed, or at least closed?
Reply
Old Dec 22, 2006 | 12:01 PM
  #2  
fla-tls's Avatar
On the way!
 
Joined: Oct 2001
Posts: 3,715
Likes: 0
From: Orlando, FL
Sounds like a question for the fine folks a Zonealarm. Maybe bug in the software? Maybe a misconfiguration of the software?
Reply
Old Dec 22, 2006 | 12:25 PM
  #3  
GBockers's Avatar
...I like stories...
 
Joined: Apr 2006
Posts: 284
Likes: 0
From: Boston Metro
I don't use software based Firewall but...

Originally Posted by whynot
I've been using the Zonealarm security suite for a while, have the latest version 6.5. Last night I decided to scan ports 1-1250 and it turns out that at least 3 ports were open! wtf! The settings in zonealarm seem to be right, internet zone security is set on high. Why aren't all the ports stealthed, or at least closed?
The opened ports should be stealthed; obviously if they're 53, 80, 443 and the pop3 port (escapes me) those are necessary for internet access and email.

G
Reply
Old Dec 22, 2006 | 12:39 PM
  #4  
doopstr's Avatar
Team Owner
20 Year Member
Liked
Loved
Community Favorite
 
Joined: Jan 2001
Posts: 25,967
Likes: 2,685
From: Jersey
What ports?
Reply
Old Dec 22, 2006 | 12:43 PM
  #5  
fla-tls's Avatar
On the way!
 
Joined: Oct 2001
Posts: 3,715
Likes: 0
From: Orlando, FL
Guys - Zonealarm should stealth ALL ports in it's default configuration. If he has open ones it's either a bug in the software, or somehow it's configured to hold those open.

Also, how are you testing this - grc.com shields up?
Reply
Old Dec 22, 2006 | 01:06 PM
  #6  
blumpkin's Avatar
o-qua tangin wann
 
Joined: Sep 2003
Posts: 2,445
Likes: 0
From: NJ
i dislike zone alarms
Reply
Old Dec 22, 2006 | 01:10 PM
  #7  
whynot's Avatar
Thread Starter
X spots the mark
 
Joined: Dec 2005
Posts: 1,519
Likes: 0
From: Concrete jungles
I don't remember which ports were open, it was in the 1-50 range. I tested with shieldsup and a few other sites. All seem to give somewhat different results. The only security scan which told me that the firewall passed all tests successfully was the Symantec one which is basically a joke.
Reply
Old Dec 22, 2006 | 01:15 PM
  #8  
fla-tls's Avatar
On the way!
 
Joined: Oct 2001
Posts: 3,715
Likes: 0
From: Orlando, FL
My DSL modem/router stealths all of the ports, but will respond to pings - so therefore shields up will report a failure. Since it protects me by NAT I don't need a computer-based firewall.

I haven't needed zonealarm since I had a USB DSL modem that would dump me right on the Internet - but that was years ago.
Reply
Old Dec 22, 2006 | 01:37 PM
  #9  
whynot's Avatar
Thread Starter
X spots the mark
 
Joined: Dec 2005
Posts: 1,519
Likes: 0
From: Concrete jungles
Originally Posted by fla-tls
My DSL modem/router stealths all of the ports, but will respond to pings - so therefore shields up will report a failure. Since it protects me by NAT I don't need a computer-based firewall.

I haven't needed zonealarm since I had a USB DSL modem that would dump me right on the Internet - but that was years ago.
so should I be concerned about those ports being reported as open? does it compromise my computer's security?
Reply
Old Dec 22, 2006 | 01:56 PM
  #10  
fla-tls's Avatar
On the way!
 
Joined: Oct 2001
Posts: 3,715
Likes: 0
From: Orlando, FL
Is your computer behind a dsl or cable router? If so, it's your router that's responding to the shields up site - not your computer. Try shields up with and without zonealarm. You should get the same results.

Make sure your remote management features for the modem/router are set to disabled and try again. That may shut off those ports.
Reply
Old Dec 22, 2006 | 04:06 PM
  #11  
whynot's Avatar
Thread Starter
X spots the mark
 
Joined: Dec 2005
Posts: 1,519
Likes: 0
From: Concrete jungles
I have a cable modem, I really doubt it's got a built in router
Reply
Old Dec 22, 2006 | 08:19 PM
  #12  
fla-tls's Avatar
On the way!
 
Joined: Oct 2001
Posts: 3,715
Likes: 0
From: Orlando, FL
Many actually do now. If you are hooked up to the modem with you network card, type "ipconfig /all" at a command prompt and look at the address of your network card.

If your address begins with 10 or 172.31 or 192.168 then your modem most likely is a router. Those are private addresses not used on the Internet. The most common is 192.168.
Reply
Old Dec 22, 2006 | 11:16 PM
  #13  
suXor's Avatar
Still trolling
 
Joined: Oct 2002
Posts: 4,623
Likes: 1
From: Wylie, Texas
I run no firewall software on my PC. I do use a router on my network. Router > *

Zone Alarm and the like are messy....
Reply
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
navtool.com
3G MDX (2014-2020)
32
Jan 20, 2016 11:43 AM
navtool.com
5G TLX Audio, Bluetooth, Electronics & Navigation
31
Nov 16, 2015 08:30 PM
navtool.com
1G RDX Audio, Bluetooth, Electronics & Navigation
1
Sep 25, 2015 05:15 PM
rboller
3G TL Audio, Bluetooth, Electronics & Navigation
0
Sep 23, 2015 02:49 PM




All times are GMT -5. The time now is 08:26 AM.