How to block traffic in and out to all ports....

From: Larry James (ljames_at_apollo3.com)
Date: 09/28/03


Date: 28 Sep 2003 05:36:44 -0700


.
     Can someone tell me of a quick and easy way to block traffic to
all ports. I would likt to block all ports, then one by one open the
ones that I find that are needed to run my network, like pop3, smtp,
ssh, etc.

     Thanks in advance for any input.

                          -- L. James

------------
L. D. James
ljames@apollo3.com
www.apollo3.com/~ljames



Relevant Pages

  • Re: sshd brute force attempts?
    ... I think you misunderstood what I meant by public service, or maybe it wasn't clear: By a public service I mean a service available for anyone, even anonymously: You're not going to register the world to let people send mail to your server, require authentication to send mail from your server). ... If this is stored on a usb-stick the user carries with him, or only on systems that require local authentication first, then I think you're better off than password based ssh. ... Cracklib is in ports and easy to build -- FreeBSD could use a) an option in make.conf to prevent passwd from getting built on a buildworld and b) the patched passwd/yppasswd tree in ports. ... I don't assume that level of savvy. ...
    (freebsd-questions)
  • Re: Prot Forwarding
    ... Al's SSH method would be the best. ... configure the remote control programs to use different ports on each ... that let you configure the ports in use. ... > Personally I use a Secure Shell tunnel to access multiple XP Pro ...
    (microsoft.public.windowsxp.network_web)
  • Re: How to block traffic in and out to all ports....
    ... > Larry James wrote: ... I would likt to block all ports, then one by one open the ... > protected by the firewall on the gateway, ... > had been behind a firewall, the infection would not have happened. ...
    (linux.redhat.misc)
  • Re: hacked?
    ... So I ssh'd in and did a netstat and saw what looked like an unwanted SSH connection... ... On the local host type nmap -sV localhost -p 1-65535 to see what ports respond and which apps/services. ...
    (comp.os.linux.misc)
  • Re: [SLE] Security, ssh/vpn into a network
    ... "My server is running several services, ... outside are http and ssh. ... Again, ports 5900 is not open to the outside, neither is any of the ... not being forwarded on the firewall but through the ssh tunnel. ...
    (SuSE)