Rules

  • From: "Aman Bedi" <gurkirpal.bedi@xxxxxxxxxxx>
  • To: "'[ISAserver.org Discussion List]'" <isalist@xxxxxxxxxxxxx>
  • Date: Thu, 30 Sep 2004 18:40:06 -0400

Hi all

 

'I know its not the best practice but is it ok. 

 

to have ALL open rules for outgoing traffic ..and 

Rules to block things which I don't want like FTP, or messengers , etc etc
above that rule 

 

And for incoming .. 

Block all incoming traffic rule (the default rule) 

And rules to allow stuff above that 

 

Like 

 

----------------------------------------------------------------------------
---------------------------------------

Rule 1 ------------ block outgoing this 

Rule 2 -------------block outgoing this 

Rule 3-------------block outgoing ths 

.

..

ALL OPEN (int to ext) ----ALLOW ----ALL TRAFFIC -----INTERNAL
--------EXTERNAL 

 

Rule 10 .......Allow incoming this 

Rule 11.......Allow incoming this 

Rule 12.......Allow incoming this

.

.

Last Deafult Rule -------DENY ----ALL TRAFFIC -----ALL NETWORKS---ALL
NETWORKS 

----------------------------------------------------------------------------
-----------------------------------------------

 

 


Aman Bedi | Systems/Network Administrator (MCP, MCSD, MCSA 2000, MCSA 2003)
54 West 39th Street, 4th Floor, New York, NY 10018 | Fax +1(212) 202-4318 |
Phone +1(212) 278-0178 ext 234 | www.scanbuy.com 

PRIVILEGED & CONFIDENTIAL 
The information contained in this email message is intended only for use of
the person or entity to whom it is addressed. The contained information is
CONFIDENTIAL and LEGALLY PRIVILEGED and exempt from disclosure under
applicable laws. If you read this message and are not the addressee, you are
notified that use, dissemination or reproduction of this message is
prohibited. If you have received this message in error, please notify the
sender immediately.
----------------------------------------------------------------------------
----------------------------------------------------------------------------
-------------------------------------

 

Other related posts: