Firewall Wizards mailing list archives

Re: port number muse


From: John Labovitz <johnl () watchguard com>
Date: Fri, 19 May 2000 14:22:56 -0700

On Thu, May 18, 2000 at 10:23:58AM -0400, Jay Nayegandhi wrote:
I am curious about what action you take:  Do you block access to that port
before finding out what it is and wait for someone to show up saying
such-and-such application no longer works, or do you find out what it is
used for and then decide what to do about it?  Or is this the kind of thing
that gets defined as part of a security policy for a network?

I often look here first:

    FAQ: Firewall Forensics (What am I seeing?)
    http://www.robertgraham.com/pubs/firewall-seen.html

--
John Labovitz
Senior Software Engineer
john.labovitz () watchguard com



Current thread: