[Dshield] Closing ports

John Sage jsage at finchhaven.com
Thu Sep 11 15:37:11 GMT 2003


On Thu, Sep 11, 2003 at 07:24:27AM -0400, Alan Frayer wrote:
> On Wed, 2003-09-10 at 22:57, John Sage wrote:
> > Realize that you only need to open port 80 if **you** are hosting a
> > web server.
> > 
> > If you are only surfing **other** web sites, you need ports > 1024
> > open somehow to accept replies from those web sites, yes.
> > 
> > But again, only if you are running a web server do you open TCP:80
> > for http yourself.
> > 
> > This is a common misunderstanding.
> No sooner had I hit the Enter key when I remembered that. Of course, I
> presently have the port closed, so I'm okay there, but thanks for
> looking out for me on that front!

No problem! I though perhaps you did have that covered, but again it's
one of those general ideas that can always use re-stating, if not for
you but for someone else...

- John
"Warning: time of day goes back, taking countermeasures."

