On Tue, 4 Apr 2000, John Clarke wrote:
> On Tue, Apr 04, 2000 at 10:10:12AM +1000, [EMAIL PROTECTED] wrote:
>
> > Are we actually talking about methods to illegally use the optus@home
> > service
> > my means of deception to fool port scanners so that servers may be used?
>
> Not at all. I was pointing out a method of securing a machine to prevent
> external access to any services that may be running for use within your
> local network. Note that the rules I posted blocked *all* incoming
> connection requests, hence a machine configured with those rules could not
> act as a server to the outside world.
Whilst blocking all ports is a good move (using REJECT) Optus may still
kick up a stink because you still don't look like a windows box
(insecure). I mean when was the last time you saw a standard home user's
windows box with no ports open?
If you have any windows boxes, you might want to see what you get out of
http://grc.com/default.htm (goto Shields Up). This site is also handy for
trying to close down your network firewall to protect any windows boxes
you have viewable to the internet.
Anyway, if you block everything from the outside world, how can you prove
that you truely are blocking external traffic, and not just Optus's IP
range?
Just my 10cents.
Cheers,
Kieran
--
SLUG - Sydney Linux Users Group Mailing List - http://www.slug.org.au
To unsubscribe send email to [EMAIL PROTECTED] with
unsubscribe in the text