>
> I've thought occasionally, since the MS Win[9N][xT] TCP/IP
> stack is based on
> the *BSD one, that it should be possible to adapt the OpenBSD
> firewall/s to
> the MS Win-compatible TCP/IP stack. I thought of it when my
> Mum's MS Win05
> box went online, but haven't had the time to do anything about it.
>
> What do people think?
IIRC, the NT stack is not based on the BSD one. It has been completley
rewritten from scratch.
Windows firewalls can be implemented in a few different ways. There is a
winsock hook, which is quite frankly laughable in terms of security, there
are several other means of hooking into the TDI and NDIS. There is also an
ip filter driver which was introduced in Windows 2000 (but dropped there
after).
There is then the more secure, but more complex methods of writing kernel
level drivers either sandwiched between NDIS as an intermediate driver, or
implementing the new windows technology of Windows Filter Platform / Winsock
Kernel which Alex Ionescu has brought to my attention recently.
None of the above methods can be derived directly from the BSD
implementation.
************************************************************************
The information contained in this message or any of its
attachments is confidential and is intended for the exclusive
use of the addressee. The information may also be legally
privileged. The views expressed may not be company policy,
but the personal views of the originator. If you are not the
addressee, any disclosure, reproduction, distribution or other
dissemination or use of this communication is strictly prohibited.
If you have received this message in error, please contact
postmaster(a)exideuk.co.uk
<mailto:postmaster@exideuk.co.uk> and then delete this message.
Exide Technologies is an industrial and transportation battery
producer and recycler with operations in 89 countries.
Further information can be found at www.exide.com
Current thoughts are either an an intermediate NDIS driver, or implementing
WFP / WSK.
Either way they will both operate at the lower end of the network stack for
maximum security.
-----Original Message-----
From: crashfourit [mailto:crashfourit@gmail.com]
Sent: 15 November 2005 02:46
To: ReactOS General List
Subject: Re: [ros-general] Re: TDI-Based Open Source Personal Firewall
I would say that the firewall needs to be integrated with the TCP/IP stack
and the network API. This could give better protection for the end user,
but it could come with a curse. To do this, we would need to make sure that
eliminate, as much as possible, the possibility of double free and buffer
overflow attacks. Also, there need to be an option to log were all the
traffic is coming from or going to. In addition, it needs filter, including
incoming traffic, outgoing traffic. Also, it need to be able to destignuish
between trusted addapters and non-trusted addapter with various levels
between them. It would also be nice to have the option to filter out most
everything when the screensaver is on or after a certain user inactivity
period.
Michael B. Trausch wrote:
Richard Campbell wrote:
That's your opinion.
Do you know that on this box i've never run a firewall or a virus
scanner? Occasionally i'll run a web based scanner to check suspicious
files, etc. but i've never found need for a firewall/virus scanner. As
long as you stay up to date and don't run questionable files you are
fine. A firewall is not NEEDED as long as the OS is properly configured
and working.
Richard
Many users of Windows like things that "just work." That includes virus
protection and the like. While I shy away from questionable files and
practices, sometimes prohibitively so, I retain a current, updated virus
scanner on my machine, "just in case." People I work with aren't always
as careful as I am, and I've found one or two (relatively harmless)
things that way. It doesn't bother me much, but it is nice to have.
Nobody's perfect.
As far as a firewall... I don't like software firewalls, but many do.
They like their functionality to block things and whatnot.
Also, people just aren't careful. They don't care. They click away,
and everything else. That's 70%, if not more, of the computer users
that you have out there. If those people aren't protected out of the
box, odds are they won't be -- and that puts the rest of us at risk,
especially if they get something that can do nasty bandwidth hogging things.
When you're talking about "real" end-users, firewalls and virus software
are a must. They are there to prevent the Internet from falling apart,
in many ways, and while I don't like the fact that they are necessary at
all, they are, and that's a result of the world we live in.
- Mike
_____
_______________________________________________
ros-general mailing list
ros-general(a)reactos.org <mailto:ros-general@reactos.org>
http://www.reactos.org/mailman/listinfo/ros-general
<http://www.reactos.org/mailman/listinfo/ros-general>
************************************************************************
The information contained in this message or any of its
attachments is confidential and is intended for the exclusive
use of the addressee. The information may also be legally
privileged. The views expressed may not be company policy,
but the personal views of the originator. If you are not the
addressee, any disclosure, reproduction, distribution or other
dissemination or use of this communication is strictly prohibited.
If you have received this message in error, please contact
postmaster(a)exideuk.co.uk
<mailto:postmaster@exideuk.co.uk> and then delete this message.
Exide Technologies is an industrial and transportation battery
producer and recycler with operations in 89 countries.
Further information can be found at www.exide.com
I'd like to get ReactOS up and running on my Debian Linux box, so I can try
it out. I would like to install it on a second hard drive, and boot to it
using Grub, which I already use with Debian. I'm not sure how to do this.
Can I choose which hard drive I install ReactOS to when I am installing from
the ReactOS CD? If not, how do I install to the slave drive and not the
master? Will installing to the slave drive cause me problems with Grub? Will
I need to do some configuring of Grub to get ReacOS to boot from the second
hard drive?
I'm just looking for the basic procedure I need to follow. I can do some
digging on the net for the ugly details. I'm not sure where to start with
this, or if it will even work.
Thanks,
Scott Huey
Understanding and Replacing Microsoft Exchange
by Tom Adelstein
http://www.linuxjournal.com/article/6368
I've downloaded it in connection with something entirely different (shades of
Monty Python! ;) and discoverred this article.
So, we've got some network functionality already, we've got a NetBEUI in the
form of Sambs-NG, we've got most of the specialized stuff already out there.
We've just got to get it all fitting together. (famous last words ;)
Wesley Parish
--
Clinersterton beademung, with all of love - RIP James Blish
-----
Mau e ki, he aha te mea nui?
You ask, what is the most important thing?
Maku e ki, he tangata, he tangata, he tangata.
I reply, it is people, it is people, it is people.
<hi>
can somebody help me, plz with instalation of reactos?
i've downloaded livecd iso, burned it onto cd, but when i try to
load - nothing happens
it says that itz not bootable, cannot find bood sector, and so on..
whats wrong?
and one more quostion - how to install this os?
cause i dont see nothing that is suitable for install(for xample in
VMWare)
thanx in advance..
</hi>
--
I agree with mf on his changes.
The black theme looks much better, and stops the flicker on my screen.
I think the changes should be merged to usetup (with the timer put back in)
-----Original Message-----
From: mf [mailto:mf@mufunyo.net]
Sent: 09 November 2005 19:15
To: ReactOS General List
Subject: [ros-general] Re: Freeldr UI modifications
Alex Ionescu wrote:
> That's exactly how my freeldr looks, but I only had to modify
> freeldr.ini. Why touch bootsup.c?
>
> Best regards,
> Alex Ionescu
bootsup.c is the code where usetup "generates" a freeldr.ini upon
install. I usually format the virtual drive before I install a new build
of ReactOS on it to prevent registry corruption, so any local changes
will be wiped this way.
Casper Hornstrup wrote:
> Why not just make it as simple as ntldr while you are at it?
Because even though I have touched my C book for the first time in
roughly 3 years (it was dusty) and started reading it, I am still in no
position to call myself a programmer or modify any ReactOS code. Until I
advance at least a few chapters I will keep myself to modifying
parameters, drawing artwork and motivating programmers instead of
writing my own code. In this case I have simply modified some color
parameters to change Freeldr's look.
mf
_______________________________________________
ros-general mailing list
ros-general(a)reactos.org
http://www.reactos.org/mailman/listinfo/ros-general
************************************************************************
The information contained in this message or any of its
attachments is confidential and is intended for the exclusive
use of the addressee. The information may also be legally
privileged. The views expressed may not be company policy,
but the personal views of the originator. If you are not the
addressee, any disclosure, reproduction, distribution or other
dissemination or use of this communication is strictly prohibited.
If you have received this message in error, please contact
postmaster(a)exideuk.co.uk
<mailto:postmaster@exideuk.co.uk> and then delete this message.
Exide Technologies is an industrial and transportation battery
producer and recycler with operations in 89 countries.
Further information can be found at www.exide.com
Hi,
if I send a message to the ros-general mailing list, I get always a spam
mail like the mail below. I don't like this. It is possible to remove
info(a)uol.com.br from the list?
- Hartmut
AntiSpam UOL wrote:
> ANTISPAM UOL » TIRA-TEIMA <http://antispam.uol.com.br>
>
> Olá,
>
> Você enviou uma mensagem para *info(a)uol.com.br*
> Para que sua mensagem seja encaminhada, por favor, *clique aqui*
> <http://tira-teima.as.uol.com.br/challengeSender.html?data=J0RbYeou31cdWTH9P…>
>
>
> Esta confirmação é necessária porque *info(a)uol.com.br* usa o Antispam
> UOL, um programa que elimina mensagens enviadas por robôs, como
> pornografia, propaganda e correntes.
>
> *As próximas mensagens enviadas para info(a)uol.com.br não precisarão
> ser confirmadas*.*
> *Caso você receba outro pedido de confirmação, por favor, peça para
> info(a)uol.com.br incluí-lo em sua lista de autorizados.
>
> *Atenção!* Se você não conseguir clicar no atalho acima, acesse este
> endereço:
> http://tira-teima.as.uol.com.br/challengeSender.html?data=J0RbYeou31cdWTH9P…
>
>
> ------------------------------------------------------------------------
>
> Hi,
>
> You´ve just sent a message to *info(a)uol.com.br*
> In order to confirm the sent message, please *click here*
> <http://tira-teima.as.uol.com.br/challengeSender.html?data=J0RbYeou31cdWTH9P…>
>
>
> This confirmation is necessary because *info(a)uol.com.br* uses Antispam
> UOL, a service that avoids unwanted messages like advertising,
> pornography, viruses, and spams.
>
> *Other messages sent to info(a)uol.com.br won't need to be confirmed*.*
> *If you receive another confirmation request, please ask
> info(a)uol.com.br to include you in his/her authorized e-mail list.
>
> *Warning!* If the link doesn´t work, please copy the address below and
> paste it on your browser:
> http://tira-teima.as.uol.com.br/challengeSender.html?data=J0RbYeou31cdWTH9P…
>
>
>
> Use o *AntiSpam UOL* <http://antispam.uol.com.br> e proteja sua caixa
> postal
>
>
Hi,
sometimes I try to login to the forum or to bugzilla from work (I do
hope my boss didn't read this). It has worked in the past. Since the
changing to the new web page, it isn't possible. After the login, I'm
again on the login page. I see no error. I'm using W2k and the Internet
Explorer 6.x. All settings are predefined. What is different between the
old and the new login?
- Hartmut
Hi,
I recall having heard several suggestions to make freeldr easier on the
eyes (don't underestimate 60Hz VGA resolutions on a CRT) and/or make it
look more familiar to ntldr. I have experimented with editing bootsup.c
and the result implements both suggestions. The black background makes
it less flickery on CRT displays and looks more in line with ntldr (the
Windows boot loader). Please see the attached image and tell me your
thoughts and observations.
Best Regards,
mf.