Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 09 Oct 2006 09:36:15 -0500
From:      eculp@bafirst.com
To:        freebsd-pf@freebsd.org
Subject:   Greg's side note
Message-ID:  <20061009093615.ik9e6k87k88kcggg@mail.bafirst.com>
In-Reply-To: <000301c6eb6e$b49aeda0$0201a8c0@vaio>
References:  <000301c6eb6e$b49aeda0$0201a8c0@vaio>

next in thread | previous in thread | raw e-mail | index | archive | help
< snip >

> On a side note,
>
> The default block rule should match both ingress and egress traffic.
> A system cannot be deemed secure it if implictly allows egress traffic to
> flow.

Makes sense but I haven't done it do to an ignorance of which 
unprivileged ports need to be enabled for things like skype, IM etc.  
Does anyone have any recommendations as to where a list of ports used 
by programs like the above can be found or a restricted range of ports 
that has worked for you?

Thanks,

ed




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20061009093615.ik9e6k87k88kcggg>