Mailing List Archive
tlug.jp Mailing List tlug archive tlug Mailing List Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]Re: [tlug] iptables - Tools for easy configuration
- Date: Tue, 3 Jul 2007 04:36:04 +0900 (JST)
- From: Curt Sampson <cjs@example.com>
- Subject: Re: [tlug] iptables - Tools for easy configuration
- References: <E1I5AW1-0006hL-MN@hikari.tlug.jp> <4688C224.1050802@gmail.com> <87abufyor1.fsf@uwakimon.sk.tsukuba.ac.jp>
On Mon, 2 Jul 2007, Stephen J. Turnbull wrote:
As to why you won't find much on this .... Thing is, in general you trust the people *inside* the firewall.
Not at all. Keep in mind, some of the people inside your firewall are guys from some foreign country who happened to be able to take over a machine there.
Blocking outbound packets that claim that they're not from internal networks is a good thing. After that, there's a lot you can do. (I note that most ISPs in Japan are now blocking outbound port 25 on consumer connections which, as much as it causes me pain, it's a policy with which I have to admit I grudgingly approve.)
Oh, yeah, I guess I should say, I trust the *people* inside the firewall, but not the hosts they use.
cjs -- Curt Sampson <cjs@example.com> +81 90 7737 2974 Mobile sites and software consulting: http://www.starling-software.com
- Follow-Ups:
- Re: [tlug] iptables - Tools for easy configuration
- From: Stephen J. Turnbull
- Re: [tlug] iptables - Tools for easy configuration
- From: Josh Glover
- References:
- [tlug] iptables - Tools for easy configuration
- From: Amy & Don Johnson
- [tlug] iptables - Tools for easy configuration
- From: Stephen J. Turnbull
Home | Main Index | Thread Index
- Prev by Date: Re: Picasa is Free Beer . . . . . (was Re: [tlug] Irfanview Via Wine)
- Next by Date: Re: [tlug] The 500-mile emailing limit
- Previous by thread: [tlug] iptables - Tools for easy configuration
- Next by thread: Re: [tlug] iptables - Tools for easy configuration
- Index(es):
Home Page Mailing List Linux and Japan TLUG Members Links