<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
     xmlns:admin="http://webns.net/mvcb/"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#">
	<channel> 

	<title>Comments on: What firewall should I get?</title>
	<link>http://ask.metafilter.com/4290/What-firewall-should-I-get/</link>
	<description>Comments on Ask MetaFilter post What firewall should I get?</description>
	<pubDate>Wed, 31 Dec 2003 20:23:01 -0800</pubDate>
	<lastBuildDate>Wed, 31 Dec 2003 20:23:01 -0800</lastBuildDate>
	<language>en-us</language>
	<docs>http://blogs.law.harvard.edu/tech/rss</docs>
	<ttl>60</ttl>

	<item>
		<title>Question: What firewall should I get?</title>
		<link>http://ask.metafilter.com/4290/What-firewall-should-I-get</link>	
		<description>I have broadband now, and I guess I should get a firewall. Any recommendations? I&apos;m running OS X on an iBook G3 700MHz, and I&apos;m toying with the idea of getting a Netgear Router/Switch. [more inside] &lt;br /&gt;&lt;br /&gt; I&apos;m probably going to pull the trigger on the Netgear hardware soon, but I want software on my laptop as well. Does this make sense, to have a firmware firewall as well as additional software? Should I have something installed right now, as I&apos;m browsing the web? Any input is appreciated.</description>
		<guid isPermaLink="false">post:ask.metafilter.com,2003:site.4290</guid>
		<pubDate>Wed, 31 Dec 2003 20:14:53 -0800</pubDate>
		<dc:creator>rocketman</dc:creator>
		
			<category>broadband</category>
		
			<category>firewalls</category>
		
	</item> <item>
		<title>By: majick</title>
		<link>http://ask.metafilter.com/4290/What-firewall-should-I-get#100552</link>	
		<description>I don&apos;t know a durned thing about Apple&apos;s port filtering options, but considering the general BSDishness of the OS, you probably don&apos;t need to buy any software for it, unless Apple has utterly hobbled the kernel.&lt;br&gt;
&lt;br&gt;
Meanwhile, yes, you very much should have something acting as a filtering bastion host, and one of those cheap NAT &quot;routers&quot; will probably serve you quite well.  I have a fully-functional dual homed host acting as my router/NAT/firewall, and I&apos;m considering trading it out for consumer hardware of the kind you&apos;re talking about since I&apos;m no longer doing VPN and the like.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2003:site.4290-100552</guid>
		<pubDate>Wed, 31 Dec 2003 20:23:01 -0800</pubDate>
		<dc:creator>majick</dc:creator>
	</item><item>
		<title>By: rocketman</title>
		<link>http://ask.metafilter.com/4290/What-firewall-should-I-get#100553</link>	
		<description>Okay. I can&apos;t really talk that kind of talk, but based on a quick search, it appears that OS X has a built-in firewall. Neat. But when I look at it, I get a dialog box that tells me other firewall software is running and I need to disable it before making changes. ???&lt;br&gt;
&lt;br&gt;
I didn&apos;t think I&apos;d installed anything, but it could be talking about Mozilla, which does some basic filtering.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2003:site.4290-100553</guid>
		<pubDate>Wed, 31 Dec 2003 20:29:55 -0800</pubDate>
		<dc:creator>rocketman</dc:creator>
	</item><item>
		<title>By: rocketman</title>
		<link>http://ask.metafilter.com/4290/What-firewall-should-I-get#100557</link>	
		<description>I just installed &lt;a href=&quot;http://personalpages.tds.net/~brian_hill/brickhouse.html&quot;&gt;BrickHouse&lt;/a&gt;, which supposedly custom configures the OS X firewall. It should suffice along with the hardware I plan to get.&lt;br&gt;
&lt;br&gt;
Thanks for the feedback, majick.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2003:site.4290-100557</guid>
		<pubDate>Wed, 31 Dec 2003 20:43:57 -0800</pubDate>
		<dc:creator>rocketman</dc:creator>
	</item><item>
		<title>By: Mo Nickels</title>
		<link>http://ask.metafilter.com/4290/What-firewall-should-I-get#100565</link>	
		<description>Another good one for running on the system which is, like Brickhouse, better than the built-in firewall, is &lt;a href=http://www.pliris-soft.com/products/firewalkx/index.html&gt;Firewalk&lt;/a&gt;. Unless you&apos;re running other computers on your home network, there&apos;s really no point in getting a hardware router.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2003:site.4290-100565</guid>
		<pubDate>Wed, 31 Dec 2003 22:35:39 -0800</pubDate>
		<dc:creator>Mo Nickels</dc:creator>
	</item><item>
		<title>By: Space Coyote</title>
		<link>http://ask.metafilter.com/4290/What-firewall-should-I-get#100568</link>	
		<description>Going WiFi at this point would be as good a time as any, given the rather small price difference these days, and you get all the same port blocking as any wired consumer router.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2003:site.4290-100568</guid>
		<pubDate>Wed, 31 Dec 2003 22:51:13 -0800</pubDate>
		<dc:creator>Space Coyote</dc:creator>
	</item><item>
		<title>By: mrbill</title>
		<link>http://ask.metafilter.com/4290/What-firewall-should-I-get#100569</link>	
		<description>I&apos;m still a big fan of the (discontinued) NetGear RT314.&lt;br&gt;
&lt;br&gt;
BTW, if you&apos;re behind a NAT box, you don&apos;t *need* OSX&apos;s built-in firewall, unless you&apos;re opening up ports tunneled from the outside.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2003:site.4290-100569</guid>
		<pubDate>Wed, 31 Dec 2003 23:01:46 -0800</pubDate>
		<dc:creator>mrbill</dc:creator>
	</item><item>
		<title>By: Mo Nickels</title>
		<link>http://ask.metafilter.com/4290/What-firewall-should-I-get#100603</link>	
		<description>I meant, you don&apos;t need a hardware firewall.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2004:site.4290-100603</guid>
		<pubDate>Thu, 01 Jan 2004 09:06:42 -0800</pubDate>
		<dc:creator>Mo Nickels</dc:creator>
	</item><item>
		<title>By: majick</title>
		<link>http://ask.metafilter.com/4290/What-firewall-should-I-get#100628</link>	
		<description>&lt;i&gt;&quot;... you don&apos;t need a hardware firewall.&quot;&lt;/i&gt;&lt;br&gt;
&lt;br&gt;
While a single layer of security -- packet filtering on the host -- is better than no security at all, multiple layers of filtering on heterogenous hardware is better than leaving the whole host out on the external network.  So while it might be true in a certain technical sense that you won&apos;t &lt;b&gt;need&lt;/b&gt; a firewall in addition to filtering on the host (nor do you necessarily &quot;need&quot; filtering and security at all), you &lt;b&gt;want&lt;/b&gt; a firewall.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2004:site.4290-100628</guid>
		<pubDate>Thu, 01 Jan 2004 11:20:54 -0800</pubDate>
		<dc:creator>majick</dc:creator>
	</item>
	</channel>
</rss>
