Mailinglist Archive: opensuse-security (575 mails)

< Previous Next >
Re: [suse-security] ipchains and Portscan
  • From: Ruprecht Helms <rhelms@xxxxxxx>
  • Date: Wed, 27 Nov 2002 13:50:08 +0100 (CET)
  • Message-id: <XFMail.021127135008.rhelms@xxxxxxx>
Hi Steffen Dettmer,

> Can you please explain that? I happily block tcp/25 on all
> servers except mailservers.

that is ok. I ment that you have blocked it on the central firewall.

>> dial-up. If you have a mailserver in your DMZ
>> you can disable pop3 to outside.
>
> And if I have a POP3 server in the LAN I cannot block?!

I don't think so or we talk about different. I wrote to block to
outside and not to your internal LAN. If you have the POP3-Server
in your DMZ than you enable it to use from inside, but block it to outside.

The only reason to give the using of the pop3-server free to use from outside
is than your company have employees that have to do with customers and make a
lots of visits by the customers and need to read everytime the companymails.

Regards,
Ruprecht


----------------------------------
Ruprecht Helms IT-Service und Softwareentwicklung

Tel/Fax.: +49[0]7621 16 99 16
Homepage: http://www.rheyn.de
email: info@xxxxxxxx
----------------------------------

< Previous Next >
Follow Ups
References