Hi

Once again I assert, I assume that it's a desktop connected with DSL. And I agree with
you on all things

Now I would set up like this.

Only allowed ports to internet are 80/20/21/110/25.

That locks machine quiet strongly.

Mails can be popped directly. Why need fetchmail for a single user? OK for windows
client, you may run squid and let them pop mails directly too.

Why worry when somebody else can do the job? Anyway you don't have a static i/p and
domain name right.

And yaah X/lpd are known vulnerabilities. But standard firewalling like no connections
allowed over 1023 will block them all, right?

 Shridhar

Suresh Ramasubramanian wrote:


----------------------------------------------
Find out more about this and other Linux India 
mailing lists at http://lists.linux-india.org/

Reply via email to