RE: Help With firewall ports

2002-03-21 Thread O. A. Sabek
PROTECTED]] Sent: Monday, March 18, 2002 4:51 PM To: Clint Goodwin; security-basics Subject: RE: Help With firewall ports Clint, You're approaching this from the wrong angle... Don't look at what ports you should block, look at the ports you need open. Open only those that are necessary. Cl

Re: Help With firewall ports

2002-03-20 Thread Gregory Cascante
> To: "'Clint Goodwin'" <[EMAIL PROTECTED]>; "'security-basics'" <[EMAIL PROTECTED]> Sent: Monday, March 18, 2002 2:21 PM Subject: RE: Help With firewall ports > As a good practice, block all, and only open up the ones you need > 80,2

RE: Help With firewall ports

2002-03-19 Thread Ziggy
i think the best way to go about this ..is to allow the services you need and then block all the rest...!! i have a ORA book Building Internert Firewall's if ya interested , i can send you a zipped up version of it. Maybe that might help ya out :) Ziggy -Original Message- From: [EMAIL PR

Re: Help With firewall ports

2002-03-19 Thread Vicky Ames
Clint, Rather than trying to block a large number of ports I would recommend blocking everything and opening only what is necessary for your site to use. It's much easier to define the small number of ports you'll need to have open and IMHO it's much better practice to deny everything that is not

Re: Help With firewall ports

2002-03-19 Thread Devdas Bhagat
On 17/03/02 20:16 +0930, Clint Goodwin wrote: > Hi all, > > I was wondering what would be a good list of ports to block at my > firewall. > I have some of the most common ones covered , however I Don't have I would say block everything, and then permit only the ones wanted. > a lot of

Re: Help With firewall ports

2002-03-19 Thread Aleksander Zejn
Hi! First of all, make design of your firewall. If it's high risky fw, I recommend "default deny" approach. This means to block everything that comes into your box (from WAN in) except to ports you explicitly allow. This leads to modifieing rules every time you or any user needs to open another p

Re: Help With firewall ports

2002-03-19 Thread Cavell . McDermott
Here's a fairly complete listing of ports. But you shouldn't block specific ports that you get from a listing. You need to block ALL ports, and only allow in/out what you specifically need. http://www.securetips.com/tools/info/ports.asp Cavell McDermott Domino Admin APW Ltd. - Texas Ca

RE: Help With firewall ports

2002-03-19 Thread Medeiros James P JR MSgt 157CF/ROSC
Try this url on for size... Jim http://www.sans.org/newlook/resources/IDFAQ/oddports.htm -Original Message- From: Clint Goodwin [mailto:[EMAIL PROTECTED]] Sent: Sunday, March 17, 2002 5:47 AM To: security-basics Subject: Help With firewall ports Hi all, I was wondering what wou

RE: Help With firewall ports

2002-03-19 Thread Jeff Kerber
Clint, You're approaching this from the wrong angle... Don't look at what ports you should block, look at the ports you need open. Open only those that are necessary. Close everything else. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Clint Goodwin Se

Re: Help With firewall ports

2002-03-19 Thread Kulla
Block everything in, allow all out. Allow services that you are using and block all others. If your firewall is linux based with ip tables let me know if you need any help. Regards Kulla - Original Message - From: "Clint Goodwin" <[EMAIL PROTECTED]> To: "security-basics" <[EMAIL PROTECT

RE: Help With firewall ports

2002-03-19 Thread Warren Brennan-TM
Clint, A better way to adminster a Firewall is to block all ports, and only allow specific ports. It's much easier to list what you want, rather than what you don't want. Cheers, Warren -Original Message- From: Clint Goodwin [mailto:[EMAIL PROTECTED]] Sent: March 17, 2002 5:47 AM To:

Re: Help With firewall ports

2002-03-19 Thread amphi
On Sun, Mar 17, 2002 at 08:16:31PM +0930, Clint Goodwin wrote: > Hi all, > > I was wondering what would be a good list of ports to block at my > firewall. > I have some of the most common ones covered , however I Don't have > > a lot of experience with firewalls yet. I think you have