Keeping the outside out: Seven desktop firewalls tested

McAfee Desktop Firewall 7.5

The McAfee product arrived in a standard software box, brimming with manuals and two CDs. The actual Firewall CD did not have an autorun or pretty menu, though the software itself was easy enough to find and install. There were a multitude of licensing options including 30- and 90-day evaluations, perpetual, and one- or two-year licenses. The software took only a few minutes to install, though the system was rather slow to restart. No immediate configuration was required, with IDS available on startup.

Firewalls: Introduction
Check Point SecureClient
Computer Associates eTrust EZ Firewall
ISS RealSecure Desktop Protector
Kerio Personal Firewall
McAfee Desktop Firewall 7.5
Symantec Client Security 8.0
Zone Alarm Pro
Sample scenario
How we tested
Glossary
Specifications and results
Editors' Choice
About RMIT Test Labs

The system immediately detected the port scan and notified us with a popup window and audible siren and gave a variety of options including;
• Block indefinitely,
• Block for a time limit (default 20 minutes), and
• Not block (allow traffic).

There is also a trace option, which traces the IP address of the intruder, providing all sorts of interesting data, including IP address, any available server banners, traceroute data, and whois information (basically a return fingerprinting). The port scan returned no information other than that all ports were filtered. The ping flood caused another popup notification, and was immediately blocked and all packets dropped.

Attempts to connect to a Windows file share brings up an alert and describes in detail what the connection is and gives you the option to allow, allow once, or deny. Surfing the Web and reading e-mail give similar warnings the first time, but allow you to simply set up rules to remember what actions should be allowed.

If customisation is needed, there are several protection level settings: Custom, Minimal, Client & Server (High and Medium), and Learning Starter, which is the basic mode that then learns about attacks and blocks them and creates a custom set. Custom rules are also very easy to set up and activate, including intrusion notification and logging.

EPolicy Orchestrator is an add-on product that allows remote distribution, installation, configuration, and reporting of the McAfee Desktop Firewall.

This product is very easy to install and use, comes preconfigured for high security without getting in the way too much, and has excellent manual and online support.

Product: McAfee Desktop Firewall

Price: From AU$61.53 per user

Vendor: Network Associates

Phone: 02 9761 4200

Web: www.networkassociates.com

Interoperability: ½
Great system with good management features.

Futureproofing: ½
Very easy to install and use. Good default rule set.

ROI:
Excellent pricing.

Service: ½
Very good documentation and online help.

Rating: ½

Advertisement

Talkback 2 comments

    central silent installs?? was in ice cap but to my knowledge not yet wriitten into SP!!Anonymous -- 20/05/04

    central silent installs?? was in ice cap but to my knowledge not yet wriitten into SP!!

    You did not review the new eTrust EZ Armor. It is different now; it consists of eTrust EZ Antivirus and eTrust EZ Firewall (which is ZoneLabs technology). So you have a good antivirus, not a resource hog, uses less space on hard drive, and "ZoneAlarmAnonymous -- 03/11/04

    You did not review the new eTrust EZ Armor. It is different now; it consists of eTrust EZ Antivirus and eTrust EZ Firewall (which is ZoneLabs technology). So you have a good antivirus, not a resource hog, uses less space on hard drive, and "ZoneAlarm." There are not many better.

Add your opinion


Reviews by category

Latest Videos

Blogs

  • Chris Duckett PayPal launches Aussie developer program
    PayPal announced the opening of its certification program for Australian developers today, making Australia the first country outside of the US to offer certification.
  • Array Cash cow in a BigTinCan?
    Around one third of Australia's telcos have shut their doors over time, but that isn't stopping new ventures hoping to chip away at carriers' mobile call bonanza. By fighting carriers at the smartphone rather than the home phone, could the latest two contenders be onto something big?
  • Array A third of the way to a zettabyte
    This week on Twisted Wire we look at how internet usage is changing in Australia and around the world. How are we meeting this demand and how is the cost structure changing for the service provider?
  • More blogs »

Tags

Back to top

Featured