If you want application level protection (you do...) and logging, run Zonealarm from Zone labs. It let's you decide who and what can use a particular port, not just "open port x", and you get loging of security events. Try it, it's free... and an absolute "no-brainer" to configure as it learns from your usage.I use both; the Barricade to protect the basic network, and Zone Alarm Pro to tie down the application and selected users.