<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: XP SP2 Firewall vs Zone Alarm</title>
	<atom:link href="http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/</link>
	<description>Computer and technology tutorials and guides</description>
	<lastBuildDate>Sat, 21 Nov 2009 21:54:54 -0800</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: cdg</title>
		<link>http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/comment-page-1/#comment-7259</link>
		<dc:creator>cdg</dc:creator>
		<pubDate>Tue, 13 Jan 2009 04:20:36 +0000</pubDate>
		<guid isPermaLink="false">guid-fix-me!#comment-7259</guid>
		<description>&quot;Why block outbound connections? Software packages send information back to “home-base” all the time. Spyware can collect information and send it back to the author. These are invasions of your privacy that Zone Alarm and most other software firewalls stop.&quot;&lt;br&gt;&lt;br&gt;Rubbish! Zone Alarm is spyware! It &quot;phones home&quot; every few minutes, and transmits a variety of your personal data to several companies. This is well-documented. ZA may block OTHER outgoing traffic, but at what cost?</description>
		<content:encoded><![CDATA[<p>&#8220;Why block outbound connections? Software packages send information back to “home-base” all the time. Spyware can collect information and send it back to the author. These are invasions of your privacy that Zone Alarm and most other software firewalls stop.&#8221;</p>
<p>Rubbish! Zone Alarm is spyware! It &#8220;phones home&#8221; every few minutes, and transmits a variety of your personal data to several companies. This is well-documented. ZA may block OTHER outgoing traffic, but at what cost?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: yasser</title>
		<link>http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/comment-page-1/#comment-7033</link>
		<dc:creator>yasser</dc:creator>
		<pubDate>Tue, 06 Jan 2009 10:12:15 +0000</pubDate>
		<guid isPermaLink="false">guid-fix-me!#comment-7033</guid>
		<description>hi my name is yasser and i love having greasy bum sex and i was just wondering if anyone out there will join me</description>
		<content:encoded><![CDATA[<p>hi my name is yasser and i love having greasy bum sex and i was just wondering if anyone out there will join me</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: yasser</title>
		<link>http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/comment-page-1/#comment-7032</link>
		<dc:creator>yasser</dc:creator>
		<pubDate>Tue, 06 Jan 2009 10:10:40 +0000</pubDate>
		<guid isPermaLink="false">guid-fix-me!#comment-7032</guid>
		<description>suck balls</description>
		<content:encoded><![CDATA[<p>suck balls</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dodgymixer</title>
		<link>http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/comment-page-1/#comment-1176</link>
		<dc:creator>dodgymixer</dc:creator>
		<pubDate>Tue, 04 Jan 2005 16:55:42 +0000</pubDate>
		<guid isPermaLink="false">guid-fix-me!#comment-1176</guid>
		<description>&lt;ul id=&quot;quote&quot;&gt;&lt;h6&gt;Paul wrote:&lt;/h6&gt;I have  upgraded to SP2 and the firewall is active and I also have zonealarm running at the same time.

I havent had any problems yet :)

If and when I do I will  stop the  new xp firewall.

Has anyone else had a conflict?&lt;/ul&gt;

hi yeah my comp is now running xps sp2 and i can put zone alarm  older vertion but then when i run it it wants to update then when updat is done and i restart comp i get blue warning screen saying it has halted xp if i then go to saft mode and delte the zone alarm it is well agen i really liked zone as you could tinker with it tweek it a little to ur own liking any info im running a phillips pre built comp from pc world 3200 mhz 800 fsb great little bit of kit my darling but not sure weather to turn of sp2 or have zone    
               many thanks to whome has any ideas</description>
		<content:encoded><![CDATA[<ul id="quote">
<h6>Paul wrote:</h6>
<p>I have  upgraded to SP2 and the firewall is active and I also have zonealarm running at the same time.</p>
<p>I havent had any problems yet :)</p>
<p>If and when I do I will  stop the  new xp firewall.</p>
<p>Has anyone else had a conflict?</ul>
<p>hi yeah my comp is now running xps sp2 and i can put zone alarm  older vertion but then when i run it it wants to update then when updat is done and i restart comp i get blue warning screen saying it has halted xp if i then go to saft mode and delte the zone alarm it is well agen i really liked zone as you could tinker with it tweek it a little to ur own liking any info im running a phillips pre built comp from pc world 3200 mhz 800 fsb great little bit of kit my darling but not sure weather to turn of sp2 or have zone<br />
               many thanks to whome has any ideas</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/comment-page-1/#comment-991</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Sat, 06 Nov 2004 18:00:18 +0000</pubDate>
		<guid isPermaLink="false">guid-fix-me!#comment-991</guid>
		<description>&lt;ul id=&quot;quote&quot;&gt;&lt;h6&gt;Buick6siX wrote:&lt;/h6&gt;SP2 windows firewall does block outbound traffic, unlike the original xp firewall. 
http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfexceptions.mspx

http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx&lt;/ul&gt;

None of these pages makes any reference directly or indirectly to blocking outbound/egress traffic.  I have found that the WinXP SP2 firewall supports only &lt;strong&gt;very limited blocking&lt;/strong&gt; of outbound traffic (only ICMP).

Generally speaking, traffic is allowed outbound.  Otherwise, how could you browse the web or send IM&#039;s without making an exceptions for your web browser or IM client?

As a more technical example, the firewall blocks inbound but &lt;em&gt;not outbound&lt;/em&gt; packets with an IP protocol of ESP (ESP is a protocol that is used by some IPSEC VPN&#039;s).  I have found no way to allow ESP inbound, so one could say that it always blocks inbound ESP.  However, it always &lt;em&gt;allows&lt;/em&gt; it outbound.  

The only outbound filtering of which I&#039;ve found the firewall capable is blocking certain types of ICMP.  I have seen no way through the GUI or netsh interfaces to make it filter other kinds of traffic outbound.

Generally, it allows all outbound traffic and blocks all inbound traffic except by exceptions and &quot;advanced&quot; ICMP settings.  Exceptions can only be made for TCP and UDP traffic, and again, only for inbound traffic.

The only two references on those two pages (and the other page in that set of pages) as of today 11/6/04 are:
&lt;ul id=&quot;quote&quot;&gt;&lt;h6&gt;http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx wrote:&lt;/h6&gt;When someone on the Internet or on a network tries to connect to your computer, we call that attempt an &quot;unsolicited request.&quot;  When your computer gets an unsolicited request, Windows Firewall blocks the connection.&lt;/ul&gt;

&lt;ul id=&quot;quote&quot;&gt;&lt;h6&gt;http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfexceptions.mspx wrote:&lt;/h6&gt;If you&#039;re running Windows XP Service Pack 2 (SP2) the Windows Firewall is turned on by default. This means that most programs will not be allowed to accept unsolicited communications from the Internet unless you choose to list those programs as exceptions.&lt;/ul&gt;

Both of these imply inbound blocking and session/connection tracking (the technology that lets the firewall tell when a packet is part of a stream related to some previous packets).  That implies that the firewall will look at the packets that are going out, to help block future packets that could be related.  It does not state or imply in any way that &lt;em&gt;filtering&lt;/em&gt; is possible on outbound traffic, even if it is &lt;em&gt;inspected&lt;/em&gt;.

To explain all of this in an editorial voice, I&#039;d say that it is a personal firewall, and has more advanced technical limitations than some other personal firewalls.  However, its interface and control is nice, including domain controls.  If more advanced features are added, it could be a production-ready product.  I like it, but it&#039;s immature.</description>
		<content:encoded><![CDATA[<ul id="quote">
<h6>Buick6siX wrote:</h6>
<p>SP2 windows firewall does block outbound traffic, unlike the original xp firewall.<br />
<a href="http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfexceptions.mspx" rel="nofollow">http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfexceptions.mspx</a></p>
<p><a href="http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx" rel="nofollow">http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx</a></ul>
<p>None of these pages makes any reference directly or indirectly to blocking outbound/egress traffic.  I have found that the WinXP SP2 firewall supports only <strong>very limited blocking</strong> of outbound traffic (only ICMP).</p>
<p>Generally speaking, traffic is allowed outbound.  Otherwise, how could you browse the web or send IM&#8217;s without making an exceptions for your web browser or IM client?</p>
<p>As a more technical example, the firewall blocks inbound but <em>not outbound</em> packets with an IP protocol of ESP (ESP is a protocol that is used by some IPSEC VPN&#8217;s).  I have found no way to allow ESP inbound, so one could say that it always blocks inbound ESP.  However, it always <em>allows</em> it outbound.  </p>
<p>The only outbound filtering of which I&#8217;ve found the firewall capable is blocking certain types of ICMP.  I have seen no way through the GUI or netsh interfaces to make it filter other kinds of traffic outbound.</p>
<p>Generally, it allows all outbound traffic and blocks all inbound traffic except by exceptions and &#8220;advanced&#8221; ICMP settings.  Exceptions can only be made for TCP and UDP traffic, and again, only for inbound traffic.</p>
<p>The only two references on those two pages (and the other page in that set of pages) as of today 11/6/04 are:</p>
<ul id="quote">
<h6><a href="http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx" rel="nofollow">http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx</a> wrote:</h6>
<p>When someone on the Internet or on a network tries to connect to your computer, we call that attempt an &#8220;unsolicited request.&#8221;  When your computer gets an unsolicited request, Windows Firewall blocks the connection.</ul>
<ul id="quote">
<h6><a href="http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfexceptions.mspx" rel="nofollow">http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfexceptions.mspx</a> wrote:</h6>
<p>If you&#8217;re running Windows XP Service Pack 2 (SP2) the Windows Firewall is turned on by default. This means that most programs will not be allowed to accept unsolicited communications from the Internet unless you choose to list those programs as exceptions.</ul>
<p>Both of these imply inbound blocking and session/connection tracking (the technology that lets the firewall tell when a packet is part of a stream related to some previous packets).  That implies that the firewall will look at the packets that are going out, to help block future packets that could be related.  It does not state or imply in any way that <em>filtering</em> is possible on outbound traffic, even if it is <em>inspected</em>.</p>
<p>To explain all of this in an editorial voice, I&#8217;d say that it is a personal firewall, and has more advanced technical limitations than some other personal firewalls.  However, its interface and control is nice, including domain controls.  If more advanced features are added, it could be a production-ready product.  I like it, but it&#8217;s immature.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: alimax</title>
		<link>http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/comment-page-1/#comment-872</link>
		<dc:creator>alimax</dc:creator>
		<pubDate>Mon, 18 Oct 2004 06:15:28 +0000</pubDate>
		<guid isPermaLink="false">guid-fix-me!#comment-872</guid>
		<description>I have just installed SP2 and I cannot use my wifi network to ftp files outward when Zone Alarm is running even tho I have disabled the SP2 firewall. But if I shut ZA down I have no probs.</description>
		<content:encoded><![CDATA[<p>I have just installed SP2 and I cannot use my wifi network to ftp files outward when Zone Alarm is running even tho I have disabled the SP2 firewall. But if I shut ZA down I have no probs.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Drew7ster</title>
		<link>http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/comment-page-1/#comment-861</link>
		<dc:creator>Drew7ster</dc:creator>
		<pubDate>Fri, 15 Oct 2004 20:33:11 +0000</pubDate>
		<guid isPermaLink="false">guid-fix-me!#comment-861</guid>
		<description>I just read and am attempting to apply the tech-recipe on same topic.  The only way I can regularly access websites is to turn off Zone Alarm (v5), although previously I had security setting for XP set to turn off SP2&#039;s firewall.  Found a conflict between the two with the SP2 version off...  Odd.  Have invested in ZA and want to use it.  Can you help?
Drew</description>
		<content:encoded><![CDATA[<p>I just read and am attempting to apply the tech-recipe on same topic.  The only way I can regularly access websites is to turn off Zone Alarm (v5), although previously I had security setting for XP set to turn off SP2&#8217;s firewall.  Found a conflict between the two with the SP2 version off&#8230;  Odd.  Have invested in ZA and want to use it.  Can you help?<br />
Drew</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/comment-page-1/#comment-814</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Sat, 09 Oct 2004 14:10:39 +0000</pubDate>
		<guid isPermaLink="false">guid-fix-me!#comment-814</guid>
		<description>&lt;ul id=&quot;quote&quot;&gt;&lt;h6&gt;Buick6siX wrote:&lt;/h6&gt;SP2 windows firewall does block outbound traffic, unlike the original xp firewall. 
http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfexceptions.mspx

http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx&lt;/ul&gt;</description>
		<content:encoded><![CDATA[<ul id="quote">
<h6>Buick6siX wrote:</h6>
<p>SP2 windows firewall does block outbound traffic, unlike the original xp firewall.<br />
<a href="http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfexceptions.mspx" rel="nofollow">http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfexceptions.mspx</a></p>
<p><a href="http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx" rel="nofollow">http://www.microsoft.com/windowsxp/using/security/internet/sp2_wfintro.mspx</a></ul>
]]></content:encoded>
	</item>
	<item>
		<title>By: destroyer</title>
		<link>http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/comment-page-1/#comment-656</link>
		<dc:creator>destroyer</dc:creator>
		<pubDate>Mon, 13 Sep 2004 23:22:09 +0000</pubDate>
		<guid isPermaLink="false">guid-fix-me!#comment-656</guid>
		<description>I think that the articles state that all internet connections are blocked (incoming and outgoing) except where exceptions are made.

I may be wrong on this though, as you say, there is no specific mention to the outbound traffic (such as when ZA asks for permission and digitally signs each exe to prevent spoofing and allowing trojans, spyware, and  such from connecting). But that&#039;s how I read into it.  :)</description>
		<content:encoded><![CDATA[<p>I think that the articles state that all internet connections are blocked (incoming and outgoing) except where exceptions are made.</p>
<p>I may be wrong on this though, as you say, there is no specific mention to the outbound traffic (such as when ZA asks for permission and digitally signs each exe to prevent spoofing and allowing trojans, spyware, and  such from connecting). But that&#8217;s how I read into it.  :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: seamonkey420</title>
		<link>http://www.tech-recipes.com/rx/561/xp_sp2_firewall_zone_alarm/comment-page-1/#comment-591</link>
		<dc:creator>seamonkey420</dc:creator>
		<pubDate>Wed, 08 Sep 2004 19:44:52 +0000</pubDate>
		<guid isPermaLink="false">guid-fix-me!#comment-591</guid>
		<description>i still ran my webserver... with sp2..

maybe its your routers firewall??? 
did you open up the appropriate ports in the xp firewall program??</description>
		<content:encoded><![CDATA[<p>i still ran my webserver&#8230; with sp2..</p>
<p>maybe its your routers firewall???<br />
did you open up the appropriate ports in the xp firewall program??</p>
]]></content:encoded>
	</item>
</channel>
</rss>
