Re: What's the point of not allowing all outgoing traffic by default?
- From: Ramon F Herrera <ramon@xxxxxxxxxxx>
- Date: 27 May 2007 23:37:33 -0700
On May 24, 12:13 am, linuxlover992...@xxxxxxxxx wrote:
I have a small home network comprised of Windows and Linux PCs. I am
not serving anything to the internet. That is, all incoming traffic is
blocked blocked.
On the other hand, up until now, I allow ougtoing on a case (port/
service) by case basis. That is, up until now I add yet another port
range to the list of allowed ports/services whenever I discover
another application that needs it.
As time goes by, I discover now that I accumulated a long list of
"allow" that amounts to *almost* openning all ports... which brings
the obvious question: why make it so complicated and tedious, when I
can simply allow all outbound traffic and be done with all the hassle?
Nowdays when client PCs use so many services that practically require
opening all outgoing ports, it seems that the classic rule of thumb of
"First disallow everything by default, then only allow those needed"
is simply outdated.
Am I missing something?
Thanks,
Lynn
Lynn:
Yours is a philosophical question. You want to secure your home and
being a good neighbor. That implies:
(1) Blocking the thieves, bad guys, neighbor's children, etc. from
entering your house.
The above is obvious, and many people don't realize that they should
also:
(2) Prevent your own kids from going to your neighbor's home and
breaking things.
We should all be good Internet netizens.
-Ramon
.
- Follow-Ups:
- Re: What's the point of not allowing all outgoing traffic by default?
- From: Moe Trin
- Re: What's the point of not allowing all outgoing traffic by default?
- From: Sebastian G.
- Re: What's the point of not allowing all outgoing traffic by default?
- References:
- What's the point of not allowing all outgoing traffic by default?
- From: linuxlover992000
- What's the point of not allowing all outgoing traffic by default?
- Prev by Date: Re: VPN-1 Checkpoint wrong gateway
- Next by Date: Re: What's the point of not allowing all outgoing traffic by default?
- Previous by thread: Re: What's the point of not allowing all outgoing traffic by default?
- Next by thread: Re: What's the point of not allowing all outgoing traffic by default?
- Index(es):
Relevant Pages
|
|