Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » The Site » Old Forums » Kerio - Tiny Support » BZ Kerio 2x Default Replacement Update
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
AuthorAll Replies


gwion
wild colonial boy
Premium,ExMod 2001-08
join:2000-12-28
Pittsburgh, PA

reply to BlitzenZeus
Re: BZ Kerio 2x Default Replacement Update

Sure. Because it's provided for in the rules. That just automates by wizard the blocking of 137, 138, 139, etc. and makes it easy to add LAN allows in the private trust range. It could be used with the rules, too, as redundency, but it would be -less-, rather than more comprehensive, since the custom rules block 135, too, which wasn't considered imnportant by anybody (except me) until about two months ago when somebody actually did what I've been warning about for years, and exploited that wide open WinRPC endpoint map port...

It's a call... either use the preconfigured or make a rule. But if you use preconfigured, remember, you want to block the DCOM-RPC nonsense, that has no more business on the internet than NetBios traffic...
--
Every knot was once straight rope...


BlitzenZeus
Burnt Out Cynic
Premium,MVM
join:2000-01-13
Beaverton, OR
·Verizon FIOS
·Verizon Online DSL

Thanks Gwion, and your not the only one who was blocking 135

That feature tries to do two things, but the fact is, your rules can do a much better job, while controlling access to your shares in windows leaves you more secure overall.

I never saw the need for the addition of the tab at all, and it can possibly even make you more vulnerable now.
--
My hourly rates:
$25 per hour.
$35 per hour if you want to watch.
$45 per hour if you want to help.
$75 per hour if you tried to fix it, and failed.
Forums » The Site » Old Forums » Kerio - Tiny Support


Monday, 09-Nov 21:29:56 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [71] Verizon Keeps Swinging At AT&T
· [70] VoIP Over 3G Still Not Working For iPhone
· [32] Bill Would Force ISPs To Block Financial Scams
· [19] Mediacom Hints At 50, 100 Mbps Speeds
· [13] Clearwire To Get Another $1.5 Billion
· [9] 15 States Have Now Gotten Broadband Mapping Money
· [8] Monday Morning Links
· [5] AT&T Launching New 7.2 Mbps 3G Modem
Most people now reading
· 60 Minutes piece on cyber security last night [Security]
· Framed for child porn 151; by a PC virus [Security]
· How in the world am I going to get into college? [General Questions]
· Blown out Ballasts [Home Repair & Improvement]
· Know when to run! [Home Repair & Improvement]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Google Has Acquired Gizmo5 [VOIP Tech Chat]
· My cat is reluctant to exercise. [General Questions]
· ToC 4th boss - Preliminary Strategy for Twin Valkyr [World of Warcraft]
· Windows 7 boot manager editing questions [Microsoft Help]