[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-Disclosure] Microsoft urging users to buy Harware Firewalls



Thats exactly the problem. It takes time to lock down
services you dont need, and you cant do it during
install. Theres no list of checkboxes with one that
says "DCOM Server" among others in big letters when
you install windows.

--- William Warren <hescominsoon@adelphia.net> wrote:
> I have a 5 machine LAN here at home and I have
> Astaro Security Linux 
> setup on it..I have it doing NAT..at default
> anything not allowed is 
> denied..the outside is left like that..and will
> be...on the outgoing 
> side everything form the internal network is allowed
> to go outside...i 
> am slowly but surely locking down things that are
> not needed..like 
> netbios..this rpc stuff..and by watching and
> analyzing the logs i am 
> writing rules for closing down more protocols and
> ports.  It takes 
> time..most are not willing to take this kind of time
> to be sure...but i 
> am..<G>
>

__________________________________
Do you Yahoo!?
Yahoo! SiteBuilder - Free, easy-to-use web site design software
http://sitebuilder.yahoo.com
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html