Great Circle Associates Firewalls
(January 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Blocking ports
From: Dave Wreski <tel1dvw @ is . ups . com>
Date: Wed, 8 Jan 1997 21:15:02 -0500 (EST)
To: firewalls @ greatcircle . com

Hi all.  I have a few questions regarding port access through a firewall.
If I define source and destination IP addresses/ranges, is it necessary to
define port ranges as well?

I was thinking that IP spoofing might be an issue, but the best they could
do would be to use a port that they are not supposed to.  If I don't have
any of the common services defined anyway, does it really make a
difference?

Does anyone know any specific references to incidents where someone
accessed information they were not supposed to, under these circumstances?

Thanks much,
Dave Wreski

-----------------------------------------------------------------------
"The opinions expressed here are my own and do not represent the views
or opinions of United Parcel Service, Inc."
-----------------------------------------------------------------------
echo '16i[q]sa[ln0=aln100%Pln100/snlbx]sb20293A2058554E494Csnlbxq'|dc



Indexed By Date Previous: RE: internal filtering router - filter config?
From: Ricardo Alvarado <ralvarado @ avantel . com . mx>
Next: Re: Web Site Hacking
From: David Helms <david . helms @ checkpoint . com>
Indexed By Thread Previous: Re: RCP tcp/udp 111
From: Brian Mitchell <brian @ saturn . net>
Next: VLAN OVER FW-1
From: Kogulapalan <palan @ dataprep . com . my>

Google
 
Search Internet Search www.greatcircle.com