<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.3.3" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>
<channel>
	<title>Comments on: Fixing Leopard&#8217;s Firewall</title>
	<link>http://www.netmojo.ca/blog/2007/10/31/fixing-leopards-firewall/</link>
	<description>Netmojo System offers IT Consulting, Systems Administration and Web Development from Banff, Alberta, Canada</description>
	<pubDate>Wed, 07 Jan 2009 08:43:28 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.3.3</generator>
		<item>
		<title>By: Brent</title>
		<link>http://www.netmojo.ca/blog/2007/10/31/fixing-leopards-firewall/#comment-563</link>
		<dc:creator>Brent</dc:creator>
		<pubDate>Sun, 04 Nov 2007 23:31:08 +0000</pubDate>
		<guid>http://www.netmojo.ca/blog/2007/10/31/fixing-leopards-firewall/#comment-563</guid>
		<description>Hi Lance,

&lt;a href="http://www.obdev.at/products/littlesnitch/index.html" rel="nofollow"&gt;Little Snitch&lt;/a&gt; is a more advanced application firewall than the one that Apple ships with Leopard, and it lets you control outgoing traffic from applications on your system.  Combine it with ipfw using &lt;a href="http://www.hanynet.com/waterroof/" rel="nofollow"&gt;Waterroof&lt;/a&gt;, then you've got both general network protection and fine-grained application-level control.  

As you say, every additional layer adds security, but it also ads inconvenience.</description>
		<content:encoded><![CDATA[<p>Hi Lance,</p>
<p><a href="http://www.obdev.at/products/littlesnitch/index.html" rel="nofollow">Little Snitch</a> is a more advanced application firewall than the one that Apple ships with Leopard, and it lets you control outgoing traffic from applications on your system.  Combine it with ipfw using <a href="http://www.hanynet.com/waterroof/" rel="nofollow">Waterroof</a>, then you&#8217;ve got both general network protection and fine-grained application-level control.  </p>
<p>As you say, every additional layer adds security, but it also ads inconvenience.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: lance</title>
		<link>http://www.netmojo.ca/blog/2007/10/31/fixing-leopards-firewall/#comment-552</link>
		<dc:creator>lance</dc:creator>
		<pubDate>Sun, 04 Nov 2007 01:56:38 +0000</pubDate>
		<guid>http://www.netmojo.ca/blog/2007/10/31/fixing-leopards-firewall/#comment-552</guid>
		<description>hi- So, now I can have app-level FW, ipfw, and hardware firewall. Three is better than two, so maybe this is a step up? Tiger/Client firewall UI was always a dog when compared to the UI in Tiger/Server. Too bad they didn't put the Tiger/Server firewall UI in the Leopard/Client. Of course, that is way to complex for consumers, but it was great to have it build ipfw rules.

-lance</description>
		<content:encoded><![CDATA[<p>hi- So, now I can have app-level FW, ipfw, and hardware firewall. Three is better than two, so maybe this is a step up? Tiger/Client firewall UI was always a dog when compared to the UI in Tiger/Server. Too bad they didn&#8217;t put the Tiger/Server firewall UI in the Leopard/Client. Of course, that is way to complex for consumers, but it was great to have it build ipfw rules.</p>
<p>-lance</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.454 seconds -->
