Screenshot of Belkin firewall enabling page
Make sure your router's built-in firewall is enabled
R E L A T E D   C O N T E N T
ADVERTISEMENT

Hands on: Lock down your router

How to keep your broadband router secure, from passwords to encryption

Alan Stevens, Personal Computer World 16 Feb 2007
ADVERTISEMENT

I’m always being asked questions about network security, so I've decided to address some of the things you should and shouldn’t do to keep your network secure.

In particular, I’ll be looking at how you can lock down your network router, for which I’ll be using a Netgear DG834G and a Belkin N1 wireless router as examples, although the principles are the same, regardless of the hardware involved.

Where’s the firewall?
A firewall is an absolute must on any internet-connected PC and Windows XP comes with a pretty good desktop implementation as standard. But is a desktop firewall necessary when a router with a built-in firewall is used to connect to the internet? Strictly speaking, the answer ought to be no. You don’t need multiple firewalls all trying to do the same thing, but there are a couple of caveats.

The first is the need to be able to trust the software involved. Firewalls are complex applications and if you pay peanuts for a no-name or ancient second-hand router, the firewall it provides may not be all you would hope for. I would recommend, in those circumstances, to err on the side of caution and enable a desktop firewall as well.

On the positive side, most modern products, with their stateful packet inspection (SPI) firewalls, should be ok – but the firewall does need to be turned on to be effective. That may sound obvious, but I’ve received routers straight from the factory with the built-in firewall disabled. Even where the basic firewall has been turned on, other security measures, such as protection against Denial of Service (DoS) attacks, will often be left to the customer to enable.

You also need to think about how each PC on the network will be used. For example, you might have a notebook which you take out and about, possibly connecting to the internet at wireless hot spots, in which case additional desktop protection will definitely be required.

Furthermore, if you need to set up firewall rules to allow gaming, peer-to-peer file sharing and other traffic to particular PCs, you may want the added protection of a desktop firewall on those that are not used for such purposes.

Lastly, don’t run away with the idea that a firewall is all you need. Unless you’ve splashed out on a full-blown Unified Threat Management (UTM) appliance, your firewall will only block traffic based on its port number and, hopefully, identify and block common DoS and other attacks. Additional desktop and possibly server software will therefore be needed to screen out viruses, spam, spyware and other potential threats.


All Antivirus and Firewall Protection
Tags: Router Security

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S
M A R K E T P L A C E
Get your free demo of Numara Track-It! 8 - the leading help desk solution for IT related issues.
Make presentations, review documents & share your entire desktop. 30-day free trial! (cc required).
Discover how remote support can fuel your IT business in ways you've never thought of before.
Apply ITIL best practices at your service desk while eliminating integration cost. Learn more here.
WAN based, automated, daily vulnerability assessments. Click here to try and request our whitepapers.
Have your product or service listed here >   
Sponsored links
F E A T U R E D   J O B S
Boston Spa, Leeds, United Kingdom | The British Library
 Application Specialist - £26,196 - £31,348 - Boston SpaExcellent benefits including a civil service pension scheme + online product discounts + childcare discounts + onsite nursery + wide range of social clubs + great staff ... more >
Welwyn Garden City, Hertfordshire, United Kingdom | Tesco.com
Subject Matter Expert - Welwyn Garden City  Who's behind the world's most successful online retailer? Just over 10 years ago we started Tesco.com (aka Dotcom). Today, we've an incredible 750,000 active customers and sales at ... more >
Welwyn Garden City, Hertfordshire, United Kingdom | Tesco.com
Fulfilment Architect - Welwyn Garden City Who's behind the world's most successful online retailer? Just over 10 years ago we started Tesco.com (aka Dotcom). Today, we've an incredible 750,000 active customers and sales at just ... more >
United Kingdom | Advent Computer Training
Are you stuck in a dead end job? Do you want to take control of your salary, life and career? Advent IT and computer training offers advanced, professional training and helps you find the right ... more >
More job opportunities