I fairly strongly disagree.  If you block below 1024 you will be blocking
lots of legitimate queries.  Bind itself used to default to 53 as its
source port.

Tony Rall


"HUNGRY PIRANHA" <[EMAIL PROTECTED]>@Lists.GNAC.NET on 2001-04-14 00:45:31
a good rule of them is to only permit return from bind servers on udp >
1023.


-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to