Astaro User Bulletin Board
Go Back   Astaro User Bulletin Board > Astaro Gateway Products > General Discussion

Welcome to the Astaro User Bulletin Board.
If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

Reply
 
LinkBack Thread Tools Display Modes
  #11 (permalink)  
Old 06-03-2009, 05:00 PM
BAlfson's Avatar
Moderator
 
Join Date: Mar 2007
Location: Oklahoma City
Posts: 5,290
Default

Even bright people can be fools. I stand by the comments I made on the article website.

Cheers - Bob
__________________
ACE V7 - Astaro Preferred Partner since V3
Addicted to my iPhone!
Reply With Quote
  #12 (permalink)  
Old 06-29-2009, 09:43 AM
Senior Member
 
Join Date: Dec 2002
Location: Thailand
Posts: 107
Default

Hi Gert,

Was there any update about this? Its a month now since we were told we would be updated.
Reply With Quote
  #13 (permalink)  
Old 07-02-2009, 05:04 AM
ABx ABx is offline
Member
 
Join Date: Sep 2006
Posts: 39
Default

I have a really hard time believing those stats; Astaro has done an outstanding job in detecting malware. At one time I was doing some malware research and had to disable the antivirus for my machines, and had a high-risk surfer for whom Astaro would block 20+ pieces of malware per day and kept that machine perfectly clean.

Avira's antivirus (one of Astaro's AV engines) is known for excellent detection, and while Clam AV (the other engine) doesn't have the best detection rates they frequently add detection for new malware faster than everyone else; the two together offer fantastic detection. In addition I find that SurfControl is also very good at blocking spyware sites; I have found that it blocks most of the sites detected by McAfee's SiteAdvisor without all the false positives.

Clearly they did do something wrong in their testing. It wouldn't surprise me if they only had SurfControl and/or just one AV engine enabled. Having worked for an anti-malware company in the past I can say from experience that even professional testers mess up quite a bit (often through misconfiguration or misunderstanding, which is understandable when trying to get through a dozen products quickly), and unfortunately we (as readers) don't usually get to find out what went wrong or how the product really performed.

When it comes down to it, tests of malware detection rates are rarely realistic; both for the reasons above and because the malware test beds are simply not reflective of the malware in circulation (e.g., they may test the first generation of a piece of malware when 99% of what's circulating are thousands of variants that go undetected, etc. etc.). To top it off we also have no idea what or how they tested -- for all we know that 74% could have been sites all serving up the same malware, and the author may have no idea of how to test such things properly (as mentioned, even "properly" done tests should be taken with a small Siberian salt mine).

It's just really a shame when such reports are published on such high-profile publications; doubly so when the publication's average readers probably don't know to be skeptical.
Reply With Quote
  #14 (permalink)  
Old 07-08-2009, 07:42 PM
Junior Member
 
Join Date: Jan 2008
Posts: 16
Default Astaro

At least someone is attempting to test... good or bad it is always desirable to know if the appliance you have is actually doing the job.

I think the astaro has a throughput problem compared to my old cisco firewall, albeit, it is scanning for viruses, content filtering, watching for malware and doing some intrusion detection while still being a firewall. It is seeing about 20% less throughput than the old cisco was. In real life, that does not really affect day to day surfing but it does slow down big file downloads a bit.

I will take the throughput hit knowing it is offering great protection cause I can live with the tradeoff. On the other hand, if the test these guys ran was not flawed then we should not burry our head in the sand either just because we are astaro owners.

I would like to see a follow up on this one.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 08:41 PM.

 

Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.


These pages are specifically maintained for the discussion of firewall issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases. issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases.