Re: Understanding NAT, Firewalls, TCP/IP



Roedy Green <my_email_is_posted_on_my_website@xxxxxxxxxxxxxx> wrote:
> I want wondering if there are firewalls that might by default block
> outgoing tcp/ip connections to anything other than port 80 or FTP
> ports.

I've learned, over time, that there's no limit to the stupid stuff that
large IT departments will do with firewalls and proxies. You can
anticipate some of the problem, but you can't anticipate all.
Eventually, somebody is going to have to tell the IT department that
they are stifling work and need to lighten up.

That said, Sun saw this as a big enough deal to worry about
encapsulating RMI over HTTP... so perhaps you may run into this issue
with the same frequency they did.

> Some of the clients will be relatively computer naive people working
> on home computers in remote parts of the globe as language
> translators. They may have a home router firewall, or some software
> firewall, which they will not understand. They will have just plugged
> it in and left it to defaults.

I doubt that any home firewall product will block any outgoing ports BY
DEFAULT. I wouldn't worry about it at all. It's the "smart" people
looking for clever tricks that should scare you.

--
www.designacourse.com
The Easiest Way To Train Anyone... Anywhere.

Chris Smith - Lead Software Developer/Technical Trainer
MindIQ Corporation
.



Relevant Pages

  • Re: Someone is Scanning my computer
    ... You don't really need to worry about the actual scan. ... there's no need to worry as you run a firewall. ... if I have this STEALTH classification.. ... Ports Closed ...
    (microsoft.public.windowsxp.basics)
  • Can I use CAs EZ Firewall on an ES 2003 box ?
    ... Can I use CA's EZ Firewall on an ES 2003 box? ... I am happy with it on a host of client machines (and it's free for a year, ... just to pull down and share POP3 email ..I worry about getting in the way of ... the ES though in general ..more specifically, what ports do I need open? ...
    (microsoft.public.exchange.admin)
  • Re: Trouble accessing Outlook Web Access from behind firewall
    ... When starting the firewall I also set ... > rejected and dropped packets are logged, however I see nothing in my log ... > # Higher ports needed to accept incoming/outgoing calls ...
    (comp.security.firewalls)
  • Re: iptables configuration
    ... >> that if a 'virus/trojan' initiated a connection to the net, the firewall ... >> would not protect the LAN. ... The LAN is NATed with private IPs to one public IP. ... the ports that are used by services running on linux. ...
    (comp.os.linux.security)
  • Re: Norton Personal Firewall 2003
    ... |> First thing I would do is put the GRC test site into the Exclusions ... | ports they will not get the same result being in my blocklist, ... the firewall checks unsolicited inbound communications attempts. ...
    (comp.security.firewalls)