Don`t Learn to HACK - Hack to LEARN.All about Ethical Hacking, Penetration Testing & Computer Security

Tuesday, July 24, 2012

Difference Between Hardware Firewall & Software Firewall

Most of the computer users are familiar with the term Firewall. Firewalls are Hardware or Software programs that monitor incoming and outgoing connections analyzing the packet data for malicious behavior.  Like the definition says, there are both Software and Hardware Firewall. In this modern age, we are literally at war with hackers and malware and virus developers, all the time and data security has become the number one concern.  To protect our computers, we use security software like AntiVirus and Firewalls – and as we just mentioned, there are two kinds of firewalls – Hardware firewalls and Software firewalls.

Hardware firewall vs Software firewall

In this article we’ll talk about difference between Software Firewall & Hardware Firewall.
computer security thumb Difference Between Hardware Firewall & Software Firewall

Hardware Firewall

Hardware Firewalls are mostly seen in broadband modems, and is the first line of defense, using Packet Filtering. Before an Internet packet reaches your PC, the Hardware Firewall will monitor the packets and check where it comes from. It also checks if the IP address or header can be trusted. After these checks, the packet then reaches your PC. It blocks any links that contains malicious behavior based on the current Firewall setup in the device. Hardware Firewall usually do not need a lot of configuration. Most of the rules are built-in and predefined and based on these in-built rules, the Packet Filtering is done.
O178201093014 thumb Difference Between Hardware Firewall & Software Firewall
Todays technology has improved so much that it not just the traditional Packet Filtering which is carried out. The Hardware Firewall has built-in IPS / IPDS (Intrusion Prevention Systems), that earlier used to be a separate device. But now these are included, offering us greater protection.
When an IPDS detects a malicious activity it sends and signal and reset the connection and block the IP address. It uses signature-based, statistical anomaly-based, and stateful protocol analysis.  You can read more about this here. But the main drawback I find, is that it allows all the outgoing packets i.e. if by chance, a malware got into your system and started transmitting data, it would be allowed unless the user became aware of it, and decided to stop it. But in most cases, this does not happen.
Hardware Firewall are typically good for small or medium business owners, with 5 or more PC or a co-operate environment. The main reason is that it then becomes cost-effective, because if your to purchase Internet Security/Firewall software licenses for 10 to 50 copies, and that too on an annual subscription basis, it will cost a lot of money and deployment could also be an issue. The users will have better control over the environment. If the user is not tech savvy and if they choose to inadvertently allow a connection that has Malware behavior, it could ruin the entire network and put the company in risk with data security. A hardware firewall could thus be very useful in such cases.

There are always few things you have to consider before buying a Hardware based firewall. The number of users in your network, number of VPN users in your network, because under-estimating the number could exhaust the performance of your device and affect the performance of the Internet connection as well. Also make sure you have enough license for VPN client connection, and it has SSL, PPTP, etc. connection support too. Even if you have to pay a subscription, go for it – because subscription means, you get the latest definitions.
Manufactures are now including Gateway Antivirus, Malware scanners and Content Filters, so you’ll get maximum protection with them. For example CISCO Hardware includes  “Cisco ProtectLink Security Solutions” on selected devices. It addresses a specific security threat, and as part of an overall security approach, provides layers of protection against different threats.
There are a lot of companies you can choose from like CISCO, SonicWall, Netgear, ProSafe, D-Link etc. Make sure you either have a certified network professional with you while setting up or a good tech support, because trust me you’ll need them when you configure the system.

Software Firewall

Now that we know how Hardware Firewalls work, I’ll talk a bit Software Firewalls.  To be honest, Software Firewalls do not need a whole lot of explanation because most of us are aware of it and are already using it. Like I said in the Hardware Firewall section, if the user is not tech savvy and if they choose to allow a connection that has Malware behavior, it could ruin the entire network and put the company in risk with data security. That’s where software firewall comes into picture, as here can we block both incoming and outgoing connections and setup  trusted rules so these accidents can be avoided.  Firewall vendors constantly research in this matter and see out updates as and when required, so the chances of your computer getting compromised are slim.
network security software2 thumb Difference Between Hardware Firewall & Software Firewall
It’s a confusing job to pick a complete Internet Security solution that is just right for you. When you search in forums you can see flaming debate, where each member is defending their favorite ones. You’ll be lost in these debates ending up more confused than when you started. The rule is to set your priorities straight. Create a list of things you want. For example do you want a free Firewall solution or paid one. What features you need in your Firewall, What additional features are required, like say Antispam, Web Protection, Malware scanner, Antivirus, etc. Do you want to go in for an Internet Security Suite? Once you decide, then compare the features. I for one use Windows Firewall. The the only drawback I find it has, is that, by default, it allows all the out going connection. So I used an additional application called Windows 7 Firewall Control by Sphinx (it has been covered at that link under serial no. 5) which we can set up to block all the out going connection and also the setup rules for the ones we want, in a simple click. They have both free version and professional paid version, but Free version is more than enough. Windows Firewall Control and Windows Firewall Notifier are other two freeware you could check out.

0 comments: