-=PCTechTalk=- Re: BIG problem with windows update for Zonealarm users

  • From: Gman <gman.pctt@xxxxxxxxx>
  • To: <pctechtalk@xxxxxxxxxxxxx>
  • Date: Thu, 10 Jul 2008 15:32:12 -0400

The installation of that second one (951748) basically cut you off of the 
internet, due to that fact that ZA runs a tight ship.  Once your access was 
lost, there was no way for Windows Update to get the third (or fourth) patch 
on that list.


Without getting too heavily into the nitty gritty details, every internet 
request you make goes out over just a few high numbered ports predetermined 
by a design decision a long time ago.  Since then, pretty much everyone has 
followed this design, including MS.  However, it creates an unnecessary 
security risk to have so much traffic over just a few ports since it makes 
it easier for crackers to guess and possibly redirect you to a 'bad' site 
instead of the one you want.

This patch really opens things up by making a much wider range of ports 
available for these internet requests.  That then make it almost impossible 
for a cracker to exploit things in the way I previously described.

This patch actually exposes ZA as one of the better firewalls available.  It 
seems that all other firewall designers took the lazy way out by simply 
allowing these internet requests to pass through them regardless of what 
port was being used, while ZA's coders had restricted this type of access to 
just the port range that was part of the original design.  It was harder for 
them to code things the right way and it just now got them into trouble that 
they really don't deserve.  More importantly, it shows me that the ZA coders 
really do care a lot about getting things right.

Peace,
Gman

"The only dumb questions are the ones we fail to ask"

----- Original Message ----- 
From: "cristy" <poppy0206@xxxxxxx>
To: <pctechtalk@xxxxxxxxxxxxx>
Sent: Thursday, July 10, 2008 8:23 AM
Subject: -=PCTechTalk=- Re: BIG problem with windows update for Zonealarm 
users


> These were the updates that came my way yesterday morning.  And I think 
> the
> second one I tried was the one that did not want to work right and shut 
> down
> my internet access (I use zone alarm, free version older version too I
> think).
>
>
>
> Security update for SQL 2000 service pack 4 KB948110
>
>
>
> Security update for Windows XP KB951748
>
>
>
> Security Update for SQL Server 2000 Service Pack 4 (KB948110)
>
>
>
> Could not be installed. 


---------------------------------------------------------------
Please remember to trim your replies (including this sentence and everything 
below it) and adjust the subject line as necessary.

To unsubscribe or change your email settings:
//www.freelists.org/webpage/pctechtalk

To access our Archives:
http://groups.yahoo.com/group/PCTechTalk/messages/
//www.freelists.org/archives/pctechtalk/

To contact only the PCTT Mod Squad, write to:
pctechtalk-moderators@xxxxxxxxxxxxx
---------------------------------------------------------------

Other related posts: