←back to thread

1183 points robenkleene | 1 comments | | HN request time: 0.225s | source
Show context
malandrew ◴[] No.24839003[source]
This is a big breach of trust in terms of Apple always being on the side of user privacy.

If someone knows enough to install these firewall apps, then they know enough to figure out what they want to enable/disable even for Apple applications.

If Apple thinks certain rules cause issues, they certainly could work with the developer of these apps to educate users of adverse effects when certain things cause unintended issues for the user. The decision should still lie with the user. Bypassing firewalls by privileging some traffic is not okay.

Looks like for now, the only real option is an external device you always connect through running pfsense or another firewall, which is not too big a deal for use on a home network, but requires carrying around another device when on other networks.

replies(2): >>24839070 #>>24839290 #
lifty ◴[] No.24839070[source]
I would love if there would be a small appliance based on a raspberry pi zero or something of similar size, that could be controlled/configured from an app on your phone. This device would be powered through a usb cable (no data) from your laptop, and act as a WiFi hotstpot that you can use to route all your traffic via the VPN or network of your choice. Even if your laptop would be infected by malware or a rootkit, it would be impossible to avoid the little physical VPN/firewall.
replies(3): >>24839131 #>>24839498 #>>24839849 #
ignoramous ◴[] No.24839498[source]
https://firewalla.com/ might be it, though I am sure there are other similar products.

Disclaimer: I work on a similar product but for smartphones.

replies(1): >>24840236 #
1. lifty ◴[] No.24840236[source]
This looks awesome! Thanks