Security Basics mailing list archives

RE: Which ports to block?


From: Majed Mohammed Ayoub Al-Shodari <majeds () sedcogroup com>
Date: Tue, 27 Jul 2004 08:59:34 +0300

Hi Maher,

It should block all the ports ranges, on the another hand to allow below
ports, you should add their rules BEFORE the "deny all" rule to be able to
access through them. 
 
If you need any further info, please don't hesitate to call me or drop me an
email.
 
            Thank you and best regards
--------------------------------------

Majed Mohammed Ayoub
Tel.    :(966-2) 606-6556 Ext. ( 361 )
Fax    :(966-2) 606-1342 Ext. ( 1361 )
Mobile:(966-50) 33-67-69-1
Information Systems Security Administrator
Technical Services Section
Information Technology Department
P. O. Box 4384 Jeddah 21491
Kingdom of Saudi Arabia

-----Original Message-----
From: Ferino Mardo [mailto:RMardo () ALJOMAIHBEV com] 
Sent: 24 July 2004 11:04
To: security-basics () securityfocus com
Subject: Which ports to block?

In setting up a "deny all" rule from a firewall, is it safe to block
ports 0 to 65535 or only up to 1023? My interest are only to allow port
53 udp, 25, and 80.

---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off 
any course! All of our class sizes are guaranteed to be 10 students or less 
to facilitate one-on-one interaction with one of our expert instructors. 
Attend a course taught by an expert instructor with years of in-the-field 
pen testing experience in our state of the art hacking lab. Master the
skills 
of an Ethical Hacker to better assess the security of your organization. 
Visit us at: 
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------

---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off 
any course! All of our class sizes are guaranteed to be 10 students or less 
to facilitate one-on-one interaction with one of our expert instructors. 
Attend a course taught by an expert instructor with years of in-the-field 
pen testing experience in our state of the art hacking lab. Master the skills 
of an Ethical Hacker to better assess the security of your organization. 
Visit us at: 
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------


Current thread: