Game Servers & Firewalls

This is the place to discuss the latest computer hardware issues and technology. Please keep the discussion ON TOPIC!
Post Reply
NAiLs
Legit Extremist
Legit Extremist
Posts: 870
Joined: Tue Apr 20, 2004 12:46 am
Location: WI

Game Servers & Firewalls

Post by NAiLs »

Alright, I've got my CS:S box up and running on Windows Server 2003 Enterprise Edition. Yes, it's legit! :) I have a problem though. I put Sygate Personal Firewall on the box, and once there is traffic, it LOVES to suck up the CPU. This affects my game server's performance. Does anyone have any idea how to stop this or know of a good firewall that will not do this?

Server specs:
- Athlon XP 2800+
- 2x 1GB PC3200 DDR (Obviously running at PC2700 speeds)
- SCSI Setup... OS one drive, game servers another.
- ABit AN7 (I think... otherwise AN8... honestly don't remember right now)
- 100mbps Full Duplex Connection
- Windows Server 2003 Enterprise Edition w/ SP1

Any help or tips are appreciated! :)


-Brian
"Bow down before the one you serve! You're going to get what you deserve!" - |\| | |/|
User avatar
Dragon_Cooler
Legit Extremist
Legit Extremist
Posts: 2405
Joined: Wed Oct 12, 2005 10:17 am
Location: DFW Texas
Contact:

Post by Dragon_Cooler »

i would try Zone alarm. I have a server with 2003 that runs some game servers with a normal gateway/router (d-link). Normally if you open the port that is made for the game you shouldnt have to worry much about attackers on other ports. If they want in they will get in no matter what. But unless they are looking for something then you shouldnt have to worry much.

i wouldnt go with norton!!! either zone alarm. They also have deals where you can setup an extra computer like a pentium 1 or something as a firewall too. they use to be all over TechTV.
Image
NAiLs
Legit Extremist
Legit Extremist
Posts: 870
Joined: Tue Apr 20, 2004 12:46 am
Location: WI

Post by NAiLs »

Actually Symantec JUST bought Sygate, so their BS isn't programmed into the software yet. I cried when I saw that too.

I'm not too hot on ZoneAlarm just because of a horrible flaw in the free version that they absolutely refuse to fix because they say it isn't their problem. They claim it is a Microsoft operating system problem and not theirs, but yet the paid version fixes this problem.
Malicious code masquerading as a trusted application could trick a ZoneAlarm firewall into letting it connect to the Internet, security experts have warned.

The issue affects the popular free ZoneAlarm firewall and default installations of version 5.5 and earlier of the paid product, maker Zone Labs said in a security advisory on Thursday. Default installations of the Check Point Integrity Client are also affected, but the paid ZoneAlarm 6.0 products, released in July, are not, Zone Labs said.

Zone Labs has no current plans to update its free firewall product to protect against this issue, the company said. Its paid products offer protection against the problem because of additional technology, called an operating system firewall, that is not part of the free network firewall, LaCour said.
Link
"Bow down before the one you serve! You're going to get what you deserve!" - |\| | |/|
Nobahar
Legit Extremist
Legit Extremist
Posts: 459
Joined: Fri Jul 15, 2005 9:09 am

Post by Nobahar »

I use ISS Blackice, been using it for a long time- I believe it uses less system resources than the other ones, and it gets the job done-

I turn off application protection, it takes a decent scriptkiddie to be able to compromise my system enough to run something that needs to connect to the internet, I think the ap protection gets annoying more than it helps.
User avatar
killswitch83
Legit Extremist
Legit Extremist
Posts: 1747
Joined: Tue Jun 21, 2005 3:45 pm
Location: South Carolina

Post by killswitch83 »

that's easy, if you have some decent, mid-end parts laying around, set up a home network and set-up that rig as the firewall with Sygate installed. Sygate eats up wayyyyyyyyy too much system resources once installed on a system, so I believe it prefers to be by itself...well it and the OS, duh, lol. Of course, me being a fan of Cisco products, a hardware firewall would be good too if you have a home network, especially one with wireless connectivity. But, if it's just the rig you want to protect, then yeah I would have to agree with BlackICE...it kicks arse, and I want to get ahold of a legit copy myself, lol.
Image
User avatar
kenc51
Legit Extremist
Legit Extremist
Posts: 5167
Joined: Thu Jun 23, 2005 1:56 pm
Location: Dublin, Republic of Ireland
Contact:

Post by kenc51 »

Have you tried Tiny Personal Firewall??? --> not supposed to use much resourses
Kerii
Legit Extremist
Legit Extremist
Posts: 416
Joined: Sun Oct 02, 2005 5:07 pm

Post by Kerii »

Ever consider using a cheap $10 router for a firewall? :lol:

Just by the very nature of how it works protects you against a lot of attacks, and even better if it has additional specific firewall features.

Works plenty well enough for me. :P

Not like it's a mission critical business server right? :P
Image
NAiLs
Legit Extremist
Legit Extremist
Posts: 870
Joined: Tue Apr 20, 2004 12:46 am
Location: WI

Post by NAiLs »

Kerii wrote:Ever consider using a cheap $10 router for a firewall? :lol:

Just by the very nature of how it works protects you against a lot of attacks, and even better if it has additional specific firewall features.

Works plenty well enough for me. :P

Not like it's a mission critical business server right? :P
I'm on a switched network which I have no right to put a router in the line unfortunately. :?



I'll be looking at the above two mentioned for sure! :)
"Bow down before the one you serve! You're going to get what you deserve!" - |\| | |/|
Kerii
Legit Extremist
Legit Extremist
Posts: 416
Joined: Sun Oct 02, 2005 5:07 pm

Post by Kerii »

How about Kerio Personal Firewall?

Free for personal use. :mrgreen:

I tried using it before but it was just too technical and I was too lazy to try and learn it.

Kind of like XP's Control Panel compared to 2000's Control Panel.

Whichever one you used first will seem much simpler to use, and I had originally started with ZoneAlarm. :lol:


But yeah, heard a lot of good about it from more technically oriented aquaintances, but never got it to work. Maybe you'll be able to figure it out. :P
Image
Post Reply