Forum     

Go Back   Digit Technology Discussion Forum > News > Technology News
Register FAQ Calendar Mark Forums Read

Technology News News from the world of technology that our members stumble across. NOTE: Sources to be mentioned at the beginning of each post.


Closed Thread
 
LinkBack Thread Tools Display Modes
Old 05-11-2007, 01:01 AM   #1 (permalink)
Noobie Pro
 
alsiladka's Avatar
 
Join Date: Jan 2007
Location: Here, there, everywhere
Posts: 1,062
Default Researcher: Leopard's Firewall is a Mess


Source - Neowin and Infoworld (Full Article)

Quote:
The launch of Apple's newest OS, Leopard, has been, to say the least, tinged with negative press, what with reports of bluescreens due to third party applications and Java incompatibilities. On Friday, Rich Mogull, a security consultant and former Gartner analyst, added more fuel to the fire when he said "[Leopard's] firewall is a mess" after spending two days digging into the new firewall's capabilities. "It's a step back from Tiger's firewall. I was originally pretty bullish on Leopard's security, and I still am on the concepts, but the implementation makes most of its advances ineffective or unusable."

The firewall in Mac OS X 10.5 Leopard uses a bare-bones interface -- earlier this week, Mogull called it "so simple as to be nearly useless" -- that offers users three options: allow all incoming connections, block all incoming connections, and set access for specific services and applications Unfortunately, the implementation seems fraught with problems. "'Block all' does seem to block actual connections," said Mogull, "but any shared ports are detected as 'open/filtered' on a port scan." And unless users turn on stealth, some services -- Bonjour, Apple's network-device-locating technology, is one -- are seen as open by scans, no matter what firewall setting is selected. Only by using "Block all" with stealth enabled are shared services actually invisible.

Those inconsistencies pale against the firewall's ability to break some applications without warning. When the "Set access" mode is turned on, the firewall digitally signs applications that the user allows access to incoming communication; although most firewalls will block a program from running if it detects change, such as an upgrade to a new version, Mogull discovered that Leopard takes it one step further, blocking applications that change at runtime. Skype, the popular VoIP software and instant messenger, is one such program. If the user has set the firewall to "Set access" and runs Skype, the icon will bounce a time or two on the dock, but not load. Nor does Leopard tell the user that Skype has failed or why it won't launch. Only the Mac OS X Console gives a clue, with a message such as: 11/2/07 9:47:51 AM [0x0-0x35035].com.skype.skype[399] Check 1 failed. Can't run Skype.

However, Mogull isn't all bad news. "Fortunately, all of this is fixable," he said. "Apple clearly was a little rushed, but they're moving in the right direction. It's our responsibility to keep on Apple to make sure they convert these concepts into actual implementations."
I wonder if he was paid by MS
__________________
www.twitter.com/alsiladka
alsiladka is offline  
Advertisements. Register and be a member of the community to get rid of them.
Advertisement

Old 05-11-2007, 07:09 AM   #2 (permalink)
Dreamweaver
 
Gigacore's Avatar
 
Join Date: Aug 2006
Location: Bangalore
Posts: 3,904
Default Re: Researcher: Leopard's Firewall is a Mess

Yeah its a mess.... but we can finally conclude it as a real mess after this researcher says so
__________________
Today's noobs are tomorrow's geeks. Don't make fun of them.. encourage them. - Gigacore

Follow me on twitter.com/gigacore
Gigacore is offline  
Old 05-11-2007, 07:38 AM   #3 (permalink)
in search of myself
 
CadCrazy's Avatar
 
Join Date: Sep 2006
Location: Gurgaon
Posts: 1,720
Default Re: Researcher: Leopard's Firewall is a Mess

Already Posted
Leopard Firewall Has More Holes Than Spots
__________________
::::::::::::::::::::
Unban Praka123
::::::::::::::::::::
Vista is my Secretary | Mac is my Girlfriend | Linux is my Wife
"Ek Se Mera Kya Hoga" :lol:
CadCrazy is offline  
Old 05-11-2007, 11:36 AM   #4 (permalink)
!! RecuZant By Birth !!
 
naveen_reloaded's Avatar
 
Join Date: May 2005
Location: In Everyone`s Heart
Posts: 2,985
Default Re: Researcher: Leopard's Firewall is a Mess

Thanks for the info..mac..welcome to the real world
__________________
Know My Thoughts..
Visit my Blog @ www.Urssiva.com
Visit My Tech Blog @ www.CloudTechnica.com
naveen_reloaded is offline  
Old 05-11-2007, 06:10 PM   #5 (permalink)
Dreamweaver
 
Gigacore's Avatar
 
Join Date: Aug 2006
Location: Bangalore
Posts: 3,904
Default Re: Researcher: Leopard's Firewall is a Mess

^ dont u think using PCs is not a real world ? Its Enarmous!

Welcoming to troublesome firewalled OS is weird
__________________
Today's noobs are tomorrow's geeks. Don't make fun of them.. encourage them. - Gigacore

Follow me on twitter.com/gigacore
Gigacore is offline  
Old 05-11-2007, 06:47 PM   #6 (permalink)
!! RecuZant By Birth !!
 
naveen_reloaded's Avatar
 
Join Date: May 2005
Location: In Everyone`s Heart
Posts: 2,985
Default Re: Researcher: Leopard's Firewall is a Mess

I meant to say that get to ready to taste the real power of underworld programmers..
__________________
Know My Thoughts..
Visit my Blog @ www.Urssiva.com
Visit My Tech Blog @ www.CloudTechnica.com
naveen_reloaded is offline  
Old 05-11-2007, 09:55 PM   #7 (permalink)
Web developer
 
narangz's Avatar
 
Join Date: May 2005
Location: Paradise
Posts: 1,010
Default Re: Researcher: Leopard's Firewall is a Mess

Who said a firewall is for viruses?
narangz is offline  
Old 06-11-2007, 12:03 AM   #8 (permalink)
Techtree Reviewer
 
krazzy's Avatar
 
Join Date: Nov 2007
Location: Mumbai
Posts: 2,190
Default Re: Researcher: Leopard's Firewall is a Mess

Oops! My bad. <post deleted> Sorry, i'm a total noob when it comes to computer.
krazzy is offline  
Old 06-11-2007, 06:55 AM   #9 (permalink)
Dreamweaver
 
Gigacore's Avatar
 
Join Date: Aug 2006
Location: Bangalore
Posts: 3,904
Default Re: Researcher: Leopard's Firewall is a Mess

^ welcome back crazyfrog
__________________
Today's noobs are tomorrow's geeks. Don't make fun of them.. encourage them. - Gigacore

Follow me on twitter.com/gigacore
Gigacore is offline  
Old 06-11-2007, 09:50 AM   #10 (permalink)
Techtree Reviewer
 
krazzy's Avatar
 
Join Date: Nov 2007
Location: Mumbai
Posts: 2,190
Default Re: Researcher: Leopard's Firewall is a Mess

^^ Thanks.
krazzy is offline  
Old 06-11-2007, 11:53 AM   #11 (permalink)
Web developer
 
narangz's Avatar
 
Join Date: May 2005
Location: Paradise
Posts: 1,010
Default Re: Researcher: Leopard's Firewall is a Mess

^^NP buddy
narangz is offline  
Closed Thread

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Researcher to Demonstrate Vista Attacks freebird Technology News 13 03-05-2007 05:40 PM
Firewall rulez / rule based firewall??? alexnj Software Q&A 3 04-04-2007 10:52 AM
Top Antivirus researcher leaves Symantec for Microsoft anandk Technology News 3 18-08-2006 09:03 PM
[REVIEW] Sygate personal Firewall and Firewall 2004 anomit QnA (read only) 2 06-05-2005 02:24 PM

 
Latest Threads
- by chris
- by abhidev
- by clmlbx

Advertisement




All times are GMT +5.5. The time now is 04:02 AM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.

Search Engine Optimization by vBSEO 3.3.2