|
Firewalls (February 1997) |
What is the general practice for readers of this list on filtering outbound packets at the router between the ISP and the DMZ ? The original intent was to limit the chances of mounting attacks/FSP/general bad stuff using our site as base camp. Now, however, we have a mail application which appears to drive the router at max CPU, allegedly due to the filtering in place. That outbound filtering allows only the "good" protocols to their known ports.
|