Re: Why you have hardware firewalls

From: Arthur Hagen (art_at_broomstick.com)
Date: 04/06/05

  • Next message: bensmyth: "Re: Compression TCP/IP"
    Date: Wed, 6 Apr 2005 11:26:21 -0400
    
    

    Leythos <void@nowhere.lan> wrote:
    > On Tue, 05 Apr 2005 23:11:26 -0400, Arthur Hagen wrote:
    >>
    >> MyndPhlyp <nobody@homeright.now> wrote:
    >>>
    >>> FWIW, I got tired of all the attempts at hacking my exposed web site
    >>> and took the shotgun approach blocking all the RIPE and APNIC
    >>> networks I could identify. Things got quiet real quick. Some are on
    >>> your list (marked "*"). I think this is the complete list (at least
    >>> it was 5 months ago). All blocks are Class A (x.x.x.x/8).
    >>
    >> That seems like tossing the baby out with the bath water. I'm sure
    >> you're going to curse your decision the next time you need to
    >> download an Asus BIOS from Taiwan, or access BBC World News, or
    >> something else :-)
    >
    > I think you misunderstand the block lists - those are inbound blocks,
    > not outbound - this means you can still connect outbound to those
    > countries, but they can't connect inbound.

    Surely, for inbound non-return traffic one would block *everything* except
    what is explicitly defined?

    -- 
    *Art
    

  • Next message: bensmyth: "Re: Compression TCP/IP"

    Relevant Pages

    • how to turn firewall down
      ... Enable 3 Allow outbound destination unreachable ... Enable 9 Allow inbound router request ... 23 TCP Enable Telnet Server ...
      (comp.os.linux.networking)
    • Re: Message deferrals from EHS
      ... this is for inbound messages. ... on the sending server, if we did not use EHS. ... And outbound messages bound for EHS are working fine? ...
      (microsoft.public.exchange.connectivity)
    • HEADS UP: struct thread changed (Fwd: svn commit: r194012)
      ... Introduce a mechanism for detecting calls from outbound path of the ... where outbound path of the network stack calls into netgraph, ... netgraph nodes which can potentially reenter the network ... stack in the inbound path have to mark their inbound hooks using ...
      (freebsd-current)
    • Re: Using ultrasound
      ... In the main ultrasound view I have a DC (DC1) with a green tick at the ... Underneath as a node I have another DC (DC2) ... Outbound: Red Tick. ... An inbound partner provides data. ...
      (microsoft.public.win2000.active_directory)
    • RE: need help with another query statement
      ... > INSERT INTO MAIL(id, inbound, outbound, exception, exclude) ...
      (microsoft.public.sqlserver.programming)