The screen does not let you configure traffic filtering for the firewall.
As you can see, there is no way to configure outbound filtering - you can only enable / disable the incoming traffic filter and through different tabs you can configure the work of filtering in.
To work with the filter, you must replace the Microsoft Management Console with Windows Firewall specifically with Advanced Security Group Policy applet by entering ' wf.msc ' in the Search box or command window and pressing Enter.
The figure below shows that.
To configure the filtering of outbound traffic, use the Windows Firewall with Advanced Security Group Policy applet
If you find different profiles in the Overview area, you will see that each profile will be 'Outgoing connections invalid with the allowed method'.
Each method in Windows Firewall provides outbound connections. Click on the Outbound Rules icon on the left side of the screen, you will see all the outgoing methods. With the image below, each method allows outbound connections. Do not lock the connection.
Each method allows outbound connections
To prevent malware from making connections, you have to know all the details of thousands of malware that are surviving, and create methods for each one separately. That's really unbelievable because you can't know all about malware that hasn't been detected yet.
Competition between firewalls often allows specific programs to make connections and notify when other programs make connections. You can call the program name, execute it and make decisions about the circumstances in which the program is allowed. You can then lock or allow the program to make a connection at some time or often.
Reaction from Microsoft
Microsoft claims that the firewall can perform traffic filtering, but what it does is the user can't see it. Jason Leznek, Microsoft's product manager, said that the outbound filtering methods' were enabled by default in Windows internal services as part of Windows Service Hardening, which allows firewalls to understand Windows specific services and locking if they do something unexpected before, for example, through an exploited vulnerability. Windows Firewall also protects computers by locking out specific messages to ensure that the computer can prevent attackers from performing port scans . '
In other words, Microsoft also confirmed that firewalls can block many malware. But Leznek admits that it can't block all malware and he also claims that a more effective method of filtering out traffic is to use anti-spyware tools like Windows Defender, which has been claimed by the company. It will not allow malware to install on your computer.
This is in contrast to what Vista group product manager Greg Sullivan told BusinessWeek. 'Filtering out traffic is an expensive solution with what we don't see as much benefit ,' he added to the magazine: ' It will be a burden for all of us, the partners. Our partners and most manufacturers because of the high cost and only a few benefits from that '
However, Microsoft also has a number of methods to protect the traffic. When asked about the need for this filtering, Leznek said that Windows Live OneCare, a fee-based product and service that Microsoft sells for about $ 49.95 annually, ' provides filtering of traffic as a service. and may be an attractive option '.
Therefore, even if two-way filtering cannot be used extensively in Windows Firewall, it is possible to purchase Microsoft extended software packages.
So what is the conclusion here? If you are a Windows Vista user and want to make sure that you have a two-way traffic filter configuration, you need to buy both OneCare Live, other security products or firewalls to provide protection for traffic as well as traffic. to enter. You must also be careful that not all software works well on Windows Vista.