Help - Search - Members - Calendar
Full Version: New Outpost Version 2.5 Released
B.I.S.S. Forums > Internet Security Forum > Security Tool Database
Moore
#############################################

New Outpost Version 2.5 Released (build 370/370)

#############################################

--------------------------------------------------------------------------------

http://outpostfirewall.com/forum/showthread.php?p=85660

Agnitum Outpost Firewall Pro 2.5 offers an extensive list of valuable features that maintain the integrity of your system on the Internet.
Agnitum Outpost Firewall Pro 2.5 features improvements that make it more reliable, flexible and easy to use.


OP 2.5 review at PC Flank:
http://www.pcflank.com/review_ofp_25_1.htm


What's new?

Personal Firewall

- Network mask support in Network Address dialogs
- Filtering of localhost packets in rules creation dialog
- Filtering of transit packets in rules creation dialog for better performance on the gateway PCs
- RAWSOCKET and non-IP protocols control
- Ability to allow/block ICMP type 10 (Router Solicitation)
- Presets for working in Windows domain
- Support for creating rules for applications with non-English names
- Ability to add command line parameters for 'Run application' action in rules creation dialog

Component Control

- Ability to accept one changed component for all applications at once
- Ability to view all controlled components for particular application
- Ability to rebuild component control database from scratch

Leak tests

- Protection against process memory space hijacking by malicious code (Copycat and Thermite leak tests)
- Prompt for launching a process in hidden window (former DisableNetworkForHiddenPrcoess option in outpost.ini)
- Password protection from unauthorized stopping/terminating of Outpost service

Logging

- Option to turn logging off without Outpost restart
- Export of log files in CSV format
- Log Viewer shows records in real time
- Component Control events are logged

Advanced Configuration Wizard

- Ability to edit application rules while performing auto configuration during installation
- Ability to build Component Control database during installation
- Ability to run auto configuration both during installation and when creating a new configuration

Miscellaneous Outpost improvements

- Access to Log Viewer can be protected by password
- Faster IGMP and ICMP packet processing
- "What's new" is available" from the Help menu
- Warning if user exits Outpost or switches it to Disable mode
- "Show Log Viewer" option added to tray shortcut menu
- Outpost does not require a restart after entering registration key
- All passwords used in Outpost are encrypted
- The date before license expiration is shown
- [Last Hosts] option in outpost.ini is no more logged
- Automatically switching to Block most policy after certain period of inactivity or screen saver activation
- Ability to select a policy for Background mode

Attack Detection plug-in

- Option to play sound when attack or port scanning is detected
- Option to unblock the IP that was blocked by Attack Detection plug-in after attack or port scanning
- Ability to turn on and off detection of attacks of particular type
- Exclusion list of IPs from which port scanning would not be detected
- Exclusion list of ports to which port scanning would not be detected
- Customizing a weight of danger for port to trigger Port Scanning detection warning
- Customizing a weight of danger to trigger Port Scanning detection warning for Low, Normal and Maximum modes
- Fine tuning of attack and scanning detection internal parameters

DNS Cache plug-in

- All requests to remote port 53 violating the DNS standards are blocked
- Ability to exclude host from being cached

Attachment Quarantine plug-in

- Non-English attachments now also can be renamed
- CLSID now also can be renamed
- Attachment extensions are shown in Attachment Quarantine Properties dialog

Ads plug-in

- Ability to download list of keywords from Agnitum forum (AGNIS list)
- Import and export of the plug-in settings

Active Content plug-in

- Referrer blocking on per site basis
- Prompt option for referrers

Content plug-in

- Option to exclude some sites from being blocked by plug-in
- Import and export of the plug-in settings

Fixes (only major are listed) :

- BSOD on Hyper threading PCs
- Log Cleaner crashed and slowed performance
- Different kinds of system freezes including freeze due to alert on blocked attack, freeze during standby, freeze caused by malformed e-mails
- Incorrect service registration distorting TCP protocol performance
- Memory leaks due to IGMP flood
- Troubles in rules settings for applications located not on hard disk (floppy, CD, etc.)
- Outpost crashed during Windows shutdown
- NetBIOS counters now show correct number of sent/received bytes
- Blocking of access to specific sites
- Errors while creating exclusions lists for Ads and Active content plug-ins


Please go the Agnitum Download Page to get your copy today.
http://www.agnitum.com/download/
Moore
--------------------------------------------------------------------------------

New Blockpost for V2.5

--------------------------------------------------------------------------------

Re: Blockpost plug-in ( AKA "Untrusted Zone") for OP v2.x

--------------------------------------------------------------------------------

http://sf.net/projects/blockpost/

12.10.2004
+ recompiled with SDK 2.5, now BP is OP 2.5 compatible (I'm not sure about backward compatibility with OP 2.1)
+ back to good old days - from now Blockpost storing blocklist in a text file,
format is the same as in Import/Export.
+ from now Blockpost doesn't check entries for dublication, loading time is greatly decreased.
+ new button: "REPAIR". It will check blocklist and remove all double entries.
+ kernel part optimized, packet processing speed is slightly increased when using a small blocklist.

---------------------------------------------------------------------------------
#############################################
---------------------------------------------------------------------------------

NEW HTTPLog PLugin for OPV2.5

http://www.outpostfirewall.com/forum/showthread.php?t=11849

USE THIS VERSION ONLY WITH OUTPOST V.2.5

Simple plug-in to log HTTP requests. Can toggle between a simple URL list or the complete HTTP client request and server answer.

http://www.outpostfirewall.com/guide/the_o...ns/http_log.htm

---------------------------------------------------------------------------------
#############################################
---------------------------------------------------------------------------------
Moore
--------------------------------------------------------------------------------

Outpost 2.5 - what to expect

--------------------------------------------------------------------------------

http://www.outpostfirewall.com/forum/showthread.php?t=11836

--------------------------------------------------------------------------------

Outpost 2.5 adds several new changes and a number of fixes to known problems. It is strongly recommended that everyone upgrade if possible.

What's New:
Better performance in stopping leaktests (see FirewallLeaktester.com for an updated comparison table);

Component Control - Components can be specified as "shared" which means Outpost will only prompt for them once, not once per program. This is especially useful for drivers (mouse, touchpad) and general Windows utilities. If you mistakenly mark a component as shared, you can remove it from the list via Options/Application/Components/Edit list.

Log viewer - This now automatically refreshes giving you a constantly updating view of online activity;
Logging - Can now be disabled (Tools/Enable Logging) without having to rename files;

Rules Processing - New Actions have been added: Ignore Component Control (useful for applications with constantly changing DLLs) and Mark Rule as High Priority (for Global rules only, this gives them precedence over Application rules - useful for creating a universal Block rule);

Rules Processing - Any local proxy software (e.g. Proxomitron, Mailwasher, some anti-virus email scanners) will now need an additional rule to permit incoming traffic from local applications on 127.0.0.1 (which themselves need a rule to access the proxy if the default global "Allow Loopback" rule has been disabled). Add the following rule to the proxy's ruleset to allow such traffic:
Incoming <application> Traffic : Protocol TCP, Incoming, Remote Address 127.0.0.1, Allow
If possible, add a Local Port restriction also (many proxies allow you to specify which port to use - check their documentation for details). This feature provides greater security in that it prevents a proxy from being hijacked by malware without Outpost intervening - see the (long!) Proxomitron default ruleset question thread for a discussion of this potential exploit;

Active Content - Referers can now be set on a per-site basis;

Attack Detection- Properties are now all changeable via the GUI - no more need to modify the protect.lst file;

DNS Cache - individual sites can be excluded allowing for those domains that change address frequently.

What's Fixed:
XP SP2 - Outpost should now be recognised by the Security Center (you may need to shut it down and restart it - disconnect from the Internet first if you try this!) and should also work with the Data Execution Protection feature on Athlon64/Itanium systems;

Hyperthreading - further fixes have been added;

Active Content - some sites were only viewable with Javascript disabled. This should now be resolved.

Ad Filter - the Trusted sites feature should now work.
(note: these lists are not complete but try to highlight the most significant issues reported - please check Agnitum's website for more details).

Upgrading:

Via Agnitum Update
This is the easiest option, but updates are restricted in number to avoid server overload. If you receive a message that you already have the latest version (and your version number as supplied in Help/About Outpost Firewall... is earlier than that shown in the Current Build in the top-right) then either retry later or download a copy of Outpost 2.5 from the Agnitum website. Note that plugins for 2.1 will not work with 2.5 - the best option is to uninstall these and check the appropriate plugin forum for news of any updates.

By Direct Download
Outpost 2.5 is now available from Agnitum's website (there may be a delay before resellers have it on their sites also - if in doubt use the main Agnitum site). To use your existing configuration, take the following steps:
Make a backup copy of the configuration .ini and .cfg files first (to another folder, to be safe). If you have customised other files (like the preset.lst rules preset file), then take a copy of those too;
Disconnect from the Internet;
Uninstall your existing copy of Outpost and any plugins using Add/Remove Programs in the Control Panel (remove the plugins first);
Reboot your system when prompted;

Pre-Install Preparation: To minimise the chances of problems arising from an Outpost 2.5 installation, check that your system is clear of malware (see the AumHa Parasite Fight ! page for instructions and links), close all running programs and disable any background virus scanners. If you are running any software that restricts application activity or software installation (e.g. Process Guard, Abtrusion Protector, System Safety Monitor) please note that the Outpost install will add a service and make registry changes - ensure that these actions are permitted for the Outpost 2.5 installation;

Install the downloaded copy of Outpost 2.5 - do not install any plugins for 2.1 at this stage, 2.5 will need new plugin versions so you should consult the appropriate plugin forum for updates, if available;
Copy your saved configuration files into the Outpost program folder and load them using the File/Load Configuration option;
Check your configuration to ensure that everything appears normal;
Reconnect to the Internet.

Known Issues:
Firefox - The Firefox browser attempts to connect to localhost 127.0.0.1 on startup. While this could be blocked in Outpost 2.1 and earlier with no ill-effect, in Outpost 2.5 Firefox will need a rule permitting incoming connections from 127.0.0.1 (as per the note about proxies in part 6 of What's New).

Process Modification - Some security programs (System Safety Monitor and SpySweeper being two examples) attempt to gain write access on processes which results in Outpost 2.5 blocking them from subsequent network access. To continue using such programs, either disable the Open Process Control feature in Outpost (Options/Application/Components/Open Process Control - this will however reduce Outpost's ability to block leaktests or malware using similar techniques) or use Process Guard to "protect" programs needing Internet access.

-------------------------------------------------------------------
crespo1
Nice post MOORE smile.gif.
riaahater1
I have updated my sig with the latest information..so all of this can be found there.
smile.gif
Slayers_none
Slayers Here

Outpost still Rules

Slayers_none.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2012 Invision Power Services, Inc.