[Dshield] some newbie questions

John Holmblad jholmblad at aol.com
Wed Nov 5 01:53:19 GMT 2003


the door analogy is a good one and I would emphasize that for the 
computer with a TCP/IP stack it is more like 2^16 potential doors for 
each of UDP and TCP. So perhaps the more accurate analogy is that your 
IP network access is like  a hotel lobby with ~2*2^16 potential  
"rooms". Furthermore  it is important to control both the incoming 
access TO each of these "rooms" but also the outgoing access FROM each 
of these rooms in case one of the occupied or even vacant rooms, despite 
one's best efforts at protecting against incoming attacks, nonetheless, 
gets infected with a trojan trying to "reach out and call" someone to 
amplify the attack.

