< snip >

On a side note,

The default block rule should match both ingress and egress traffic.
A system cannot be deemed secure it if implictly allows egress traffic to
flow.

Makes sense but I haven't done it do to an ignorance of which unprivileged ports need to be enabled for things like skype, IM etc. Does anyone have any recommendations as to where a list of ports used by programs like the above can be found or a restricted range of ports that has worked for you?

Thanks,

ed

_______________________________________________
[email protected] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-pf
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to