Re: What's the point of not allowing all outgoing traffic by default?



On May 24, 12:13 am, linuxlover992...@xxxxxxxxx wrote:
I have a small home network comprised of Windows and Linux PCs. I am
not serving anything to the internet. That is, all incoming traffic is
blocked blocked.

On the other hand, up until now, I allow ougtoing on a case (port/
service) by case basis. That is, up until now I add yet another port
range to the list of allowed ports/services whenever I discover
another application that needs it.

As time goes by, I discover now that I accumulated a long list of
"allow" that amounts to *almost* openning all ports... which brings
the obvious question: why make it so complicated and tedious, when I
can simply allow all outbound traffic and be done with all the hassle?

Nowdays when client PCs use so many services that practically require
opening all outgoing ports, it seems that the classic rule of thumb of
"First disallow everything by default, then only allow those needed"
is simply outdated.

Am I missing something?

Thanks,
Lynn

Lynn:

Yours is a philosophical question. You want to secure your home and
being a good neighbor. That implies:

(1) Blocking the thieves, bad guys, neighbor's children, etc. from
entering your house.

The above is obvious, and many people don't realize that they should
also:

(2) Prevent your own kids from going to your neighbor's home and
breaking things.

We should all be good Internet netizens.

-Ramon



.



Relevant Pages

  • Re: Why Im Writing My Book - OT in a way
    ... > computer victims using Windows and the Internet. ... > explore, discover, and communicate with the world around me. ... > kid elected to adopt a ferret, I desired to gain as much information on ... I was unaware the hackers were going to use my ...
    (microsoft.public.security)
  • RE: Lost Internet Access
    ... Subject: Lost Internet Access ... Thanks and I'll let you know what if anything I discover. ... take short cuts in doing an OS Install ... ...
    (Debian-User)
  • Re: Whats the point of not allowing all outgoing traffic by default?
    ... not serving anything to the internet. ... On the other hand, up until now, I allow ougtoing on a case (port/ ... range to the list of allowed ports/services whenever I discover ... opening all outgoing ports, it seems that the classic rule of thumb of ...
    (comp.security.firewalls)
  • Re: Power Cable Challenge
    ... >> Have you seen this which was published in Saturdays Guardian. ... >> I follow a couple of`Forums on the internet. ... They're all *impossible*, as you will discover. ... embarrassment, try it with a friend before entering into the full ...
    (uk.rec.audio)