At 4:06 PM 7/16/95, Philip J. Nesser wrote:
>Quick question. If I am filtering out all TCP connections which originate
>outside the firewall via the ack bit, is there any reason to explicitly
>block the 2000/6000 range for openwindows and X11,
No.
>ie xclients trying to
>connect through the router should be blocked anyway, correct?
Correct.
-Brent
--
Brent Chapman | Great Circle Associates | For Firewalls Tutorial info:
Brent @
GreatCircle .
COM | 1057 West Dana Street | Tutorial-Info @
GreatCircle .
COM
+1 415 962 0841 | Mountain View, CA 94041 |
http://www.greatcircle.com
|
|