Kickin
Written: Jul 06 '00 (Updated Jul 09 '00)
|
Product Rating:
|
|
|
Pros: Easy to use, powerful
Cons: No IP hiding
|
|
|
| thedonga's Full Review: Symantec Norton Internet Security 2000 |
This is the GREATEST program of all time!!!!!!
No kidding.
Don't want people to know who you are? Want to stop doubleclick.com?
Use it! Make sure you find a good proxy server(http://www.secureroot.com/category/anonymity/proxies/), and make sure you block javascripts. They will never know you are coming or going!
Brief description of program.
NIS2000 blocks all incoming and OUTGOING(very important) information while on the Net. This includes cookies, environment variables in your browser, ads that kill the Net(especially if you are still on the old analog modem line), and more.
Highly(well sort of) configurable program that allows you to set your paranoia level...You can set it to allow connections, warn, or block.
Also, NIS2000 does not always catch Internet ads, so it allows you to drag and drop an ad into its program interface so anything from that domain will not show up on your screen again. There is one drawback to this feature. The NIS2000 interface does NOT stay on top of the browser, so when you click on the ad to drag it, the NIS2000 window snaps behind your browser. A little resizing of the browser will fix this.
I personally loved NetIce's Black Ice(similar product) because it tells you what the possible attacks are meant to do, but it is not very robust. And it does not hide ports like NIS2000.
This is very important(at least in my book) so a little explanation.
When you are on the Net most "attacks" are port scans looking for openings or trojans already placed on your pc, if your PC can hide your open ports(and closed ones) you will seem invisible to the scans. NIS2000 allows this. Black Ice returns all scans, thus showing you as a viable target on the net.
NIS2000 also allows parents to block certain subject matter on the Net. Since I have no reason to use this aspect I cannot tell you if it works or not.
There are three versions of NIS2000.
Personal Firewall - Only blocks ports and uses privacy features
Internet Security - Adds NAV 2000, and AD blocking
IS Family Edition - Adds parental control
I have Family.
Overall my experiences with this have been wonderful.
I have everything set as paranoid as it can be, so sometimes I need to create rules to allow certain domains access to my harddrive for cookies(like epinions.com). This is taken care of through a step-by-step walkthrough in NIS2000's interface.
Just for kicks I sometimes set NIS2000 to warn me instead of just blocking everything. You will NOT believe all the cr@p trying to get to your drive! I tire of that game quickly, and shut the world off again.
Honestly. When properly used, and with a proxy server to hide your IP address, Norton Internet Security 2000 will give you a unbeatable sense of ease on the Net. That in itself is worth the 60 bucks or so.
Realize this is "sense" of security. This program will not make you immune from every danger out there, it will only significantly reduce the problems that can arise when using a computer connected to a public forum.
There are ways around this program, as with all other programs. Hackers(some) are smart, there is always a back door. Norton Internet Security 2000 will just shut the front door for those who are not knowledgable enough to find their way past it. Be safe.
Something I just discovered:
NIS2000 is set up to monitor certain ports(not all). When a request comes in for a port Norton is not watching it looks to a rule named Default Inbound Authentication. Used with IDENT port 113.
The individual rules can be found under Options > Internet Security > Advanced Options > Firewall.
By Default this is set to PERMIT. Which means anything not being actively monitored is allowed to pass through(or at least closed).
For high security, highlight this rule, click modify, change action to IGNORE. This sets the invisible mode....
One Final note - When using Norton Antivirus 2000, disable screening of incoming email. This leaves SMTP port open.
Supposedly there is a patch for this on NAV's site, however I am pretty sure it unmasks the port and returns all scans so you are seen.
Recommended:
Yes
|
|
|
|
Epinions.com ID: thedonga
|
|
Location: Pittsburgh, PA
Reviews written: 85
Trusted by: 57 members
|
|
|