Firewall
Previous    Next



graphic

The built in firewall will -if enabled- block all traffic that is not passing through the tunnels.  This provides a measure of security as it prevents programs from accessing the internet without the protection of the tunnel. To enable the firewall, check the box next to "enable".
For use with P2P programs "block ALL traffic" is strongly to recommend. Otherwise you may not face any privacy at all!


Enable builtin firewall
Enable or disable the builtin firewall. This can also be done via the TrayIcons context menu.
Be aware that you have to press [Apply] to stop or restart the firewall from this config page.


Settings

Block all traffic to NEWS servers
This will block all traffic on port 119 that has not been first routed through the tunnel.  This will prevent your computer from retrieving or sending Usenet information unless it has been routed through the tunnel to protect your privacy.

Block all traffic to WEB servers
This will block all TCP traffic on the common web ports including 20,21,80, 443, 1080, 8080 and 8081 that has not been routed through the tunnel.  This can help in prevent malicious code from contacting a web site that collects information about users or in case you misconfigured the proxy settings of any program accessing the internet.

Block all traffic to NEWS and WEB servers
Combines the functionality of the news and web firewall functions

Block ALL traffic
This will prevent any program that has not have its traffic routed through the tunnel from accessing the internet or being accessed from the internet.
For use with P2P programs "block ALL traffic" is strongly to recommend. Otherwise you may not face any privacy at all! P2P programs use to ping around (ICMP), open incoming ports etc. pp.
However do take care as this setting will cut off any connection not running through the tunnels.

Own Settings
You will have to read, understand and edit the file "block_private.pol" in your programs installation directory. Do not use this setting or touch this file if you feel insecure about low level firewall configuration issues.
However you can experiment and simply reset to another protection level at any time.