From owner-freebsd-questions@FreeBSD.ORG Thu May 11 01:22:12 2006 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 8445216A401 for ; Thu, 11 May 2006 01:22:12 +0000 (UTC) (envelope-from jay2xra@yahoo.com) Received: from web51610.mail.yahoo.com (web51610.mail.yahoo.com [206.190.38.215]) by mx1.FreeBSD.org (Postfix) with SMTP id F2EE943D48 for ; Thu, 11 May 2006 01:22:11 +0000 (GMT) (envelope-from jay2xra@yahoo.com) Received: (qmail 12064 invoked by uid 60001); 11 May 2006 01:22:11 -0000 DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=s1024; d=yahoo.com; h=Message-ID:Received:Date:From:Subject:To:MIME-Version:Content-Type:Content-Transfer-Encoding; b=ubzDNpOoPFaMBQAkeELFACd6r2pDxE1BgAhkqBziPu3W9KCr+Xpl9145/A5xOV/iQQO3NB2DxvVxfpEmklnqYgAzg79RKTkxKBiy4NdxjDSLXxbhL3Kv6Ta1rtVIopZVMT2x8bfDCVASA0jeUnNb4Gk77zPNsCgxI80HjLRYpdA= ; Message-ID: <20060511012211.12062.qmail@web51610.mail.yahoo.com> Received: from [202.90.128.5] by web51610.mail.yahoo.com via HTTP; Wed, 10 May 2006 18:22:11 PDT Date: Wed, 10 May 2006 18:22:11 -0700 (PDT) From: Mark Jayson Alvarez To: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=iso-8859-1 Content-Transfer-Encoding: 8bit Subject: Is it recommended to allow all outgoing connections from your firewall?? X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 11 May 2006 01:22:12 -0000 Hi, I've seen most people allow all outgoing traffic originating from the firewall itself... Is this really recommended?? What if the machine have been compromised and the intruder have installed a program that let's him access the machine remotely by having the program itself to initiate the outgoing connection to him thus defying the incoming connection firewall ruleset... Thanks.. __________________________________________________ Do You Yahoo!? Tired of spam? Yahoo! Mail has the best spam protection around http://mail.yahoo.com