I would add that for Win2k and XP, particularly at home, take a long hard
look at port 445 as well.  Just why this port should be considered is best
left as an exercise for the student.  :-)

Garryck


-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]
Sent: Thursday, 27 June 2002 2:48 AM
To: Demitel
Cc: [EMAIL PROTECTED]
Subject: Re: IPC$ blocking



I would block all RPC resources on any border firewall - regardless of the
product.  Off the top of my head:

135
136
137
138
139

You could do a search for NetBIOS TCP UDP and it should spit back the ports
involved - block em all!!

As for firewalls, it's better to block EVERYTHING and determine, what's
needed.  Then, open only those few.  To engineer it the other way around is
asking for trouble, and any product (Symantec, Gauntlet, Sidewinder, etc.)
should offer you this ability, though it may take some time.

JB




Demitel <[EMAIL PROTECTED]> on 06/25/2002 01:32:35 AM

Please respond to Demitel <[EMAIL PROTECTED]>

To:    [EMAIL PROTECTED]
cc:

Subject:    IPC$ blocking


 hi

   I am looking for a firewall that can control IPC$ resource (and all
   other resources of NetBIOS). Please help me.

 Demitel                          mailto:[EMAIL PROTECTED]









Reply via email to