Firewall Wizards mailing list archives

Re: Annoying pop-ups


From: "Paul D. Robertson" <proberts () patriot net>
Date: Tue, 29 Oct 2002 09:32:14 -0500 (EST)

On Tue, 29 Oct 2002, Mikael Olsson wrote:

This is somewhat disconcerting.

You _REALLY_ should be blocking all of 135--139, TCP as well as UDP,
PLUS port 445, that got introduced in windows 2000.

Windows networking is a lot more than just port 139, folks.
Some of the not-so-clueful hackers haven't picked up on that yet,
but it's a safe bet that the clueful ones have.

[snip]

The real message here is "Don't open Windows without a screen."

Given the prevalance of "personal firewalls" and their low to free cost 
points, it *really* doesn't make sense not to provide protection at the 
filtering layer.  *Expecially* if it's a laptop and you're hauling it 
around to foreign networks[1].  Double-especially if you're administering 
firewalls, routers, or other core infrastructure from the device.

Paul
[1] Foreign as in "client, hotel, airport..." not "Swedish." ;) 
-----------------------------------------------------------------------------
Paul D. Robertson      "My statements in this message are personal opinions
proberts () patriot net      which may have no basis whatsoever in fact."
probertson () trusecure com Director of Risk Assessment TruSecure Corporation

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: