Re: What's the point of not allowing all outgoing traffic by default?



On 27 May 2007, in the Usenet newsgroup comp.security.firewalls, in article
<1180334253.293250.146270@xxxxxxxxxxxxxxxxxxxxxxxxxxxx>, Ramon F Herrera wrote:

linuxlover992...@xxxxxxxxx wrote:

As time goes by, I discover now that I accumulated a long list of
"allow" that amounts to *almost* openning all ports... which brings
the obvious question: why make it so complicated and tedious, when I
can simply allow all outbound traffic and be done with all the hassle?

Yours is a philosophical question.

No, it's technical and you seem to have missed the point

You want to secure your home and being a good neighbor. That implies:

(1) Blocking the thieves, bad guys, neighbor's children, etc. from
entering your house.

The above is obvious, and many people don't realize that they should
also:

(2) Prevent your own kids from going to your neighbor's home and
breaking things.

1. Software is not a substitute for parenting. If you haven't taught
your kids "right" from "wrong" then you are the one at fault, not the
kids, and no pathetic effort you may now make is going to fix that.

2. You don't seem to have the first idea of how TCP/IP works, despite
it being in use for twenty-four years - and in common use by the
clueless for nearly half that.

1118 Hitchhikers guide to the Internet. E. Krol. September 1989.
(Format: TXT=62757 bytes) (Status: INFORMATIONAL)

1180 TCP/IP tutorial. T.J. Socolofsky, C.J. Kale. January 1991.
(Format: TXT=65494 bytes) (Status: INFORMATIONAL)

As you are posting from a search engine, why not use it for it's
intended purpose and _search_ for RFC1118 and RFC1180 - who knows, you
might learn something.

Old guy
.



Relevant Pages

  • OT: Converting ITunes 6.x to Mp3 format?
    ... I have made sure that my kids actually purchase their music on-line, ... their music on Mp3 players. ... now I find that ITunes Version 6.x is scrambling the file format even ... old son is now swapping files with friends. ...
    (rec.aviation.piloting)
  • Re: How can I retrieve a permanent deleted word document?
    ... I suppose if your kids could get the thing to boot in DOS mode, ... services on a paid consulting basis. ... Doug Robbins - Word MVP ... to see what Format C: does, ...
    (microsoft.public.word.docmanagement)
  • Re: Warning -- (was: Google Maps)
    ... A nice "Format C:" does the job every time. ... your kids use your Windows computer, you have to be prepared to ... reinstall from the rescue CD and I'm done. ... My kids have their own comps, and the grandkids are restricted to the two ...
    (rec.motorcycles)
  • Book of Lost Souls (was: Re: The Proverbial Cat online store now open)
    ... A good many books do put out trade paperbacks of several issues at a time. ... >I could buy them all at once, yea, I'd be willing to try the format out ... TBoLS looks to be not for kids, ... Comics have recommendations these days just like most other entertainment. ...
    (rec.arts.sf.tv.babylon5.moderated)
  • Re: adding Time / time Formats
    ... Ramon wrote: ... Use a format property of... ... If you need to store durations you are better off using a long integer field to ...
    (microsoft.public.access.queries)