On Fri, 11 Sep 2009, Eddie Drapkin wrote: > Speaking of firewall lock down, I'm a big fan of the iptables > configurations that deny access to ALL ports that aren't explicitly > allowed
Yes, that's much like what I do these days. Not only what's coming in, but also strict iptable rules on what's allowed to open a connection *from* the host too. -- Aj. _______________________________________________ New York PHP User Group Community Talk Mailing List http://lists.nyphp.org/mailman/listinfo/talk http://www.nyphp.org/show_participation.php