Security Basics mailing list archives
Re: Open All Outbound Ports?
From: "Sumit Dhar" <ml_dhar () yahoo com>
Date: Tue, 13 Nov 2001 10:23:00 +0530
Consider espionage. The information goes out.
And what is worse, if someone uses something like scp/ssh, you might get a whiff of it even if you are running monitoring tools. Not only that, it becomes easier for a malicious user to attack other companies if all outbound access is allowed. For example, if only the http port is open such a user might not be able to use an exploit for ssh against an external host. Lots of small reasons like this why opening *ALL* outbound ports might not be a great idea. With Regards, Sumit Dhar http://www.rootshell.be/~dhar
Current thread:
- Open All Outbound Ports? tony tony (Nov 08)
- RE: Open All Outbound Ports? Bill Lavalette (Nov 09)
- Re: Open All Outbound Ports? Meritt James (Nov 12)
- Re: Open All Outbound Ports? Sumit Dhar (Nov 13)
- Re: Open All Outbound Ports? Meritt James (Nov 12)
- Re: Open All Outbound Ports? Jens Rantil (Nov 09)
- Re: Open All Outbound Ports? Vince Hillier (Nov 11)
- RE: Open All Outbound Ports? Clint Harris (Nov 12)
- AW: Open All Outbound Ports? Robert Sieber (Nov 13)
- <Possible follow-ups>
- RE: Open All Outbound Ports? Garbrecht, Frederick (Nov 11)
- RE: Open All Outbound Ports? Naveed Ahmed (Nov 12)
- Re: Open All Outbound Ports? m2dzus (Nov 11)
- Re: Open All Outbound Ports? James Butcher (Nov 12)
- Re: Open All Outbound Ports? mitch_latham (Nov 11)
- Re: Open All Outbound Ports? Chris Berry (Nov 12)
(Thread continues...)
- RE: Open All Outbound Ports? Bill Lavalette (Nov 09)