Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » The Site » Old Forums » Kerio - Tiny Support » BZ Kerio 2x Default Replacement Update
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
AuthorAll Replies


BlitzenZeus
Burnt Out Cynic
Premium,MVM
join:2000-01-13
Beaverton, OR
·Verizon FIOS
·Verizon Online DSL

reply to gwion
Re: BZ Kerio 2x Default Replacement Update

Thanks Gwion, and your not the only one who was blocking 135

That feature tries to do two things, but the fact is, your rules can do a much better job, while controlling access to your shares in windows leaves you more secure overall.

I never saw the need for the addition of the tab at all, and it can possibly even make you more vulnerable now.
--
My hourly rates:
$25 per hour.
$35 per hour if you want to watch.
$45 per hour if you want to help.
$75 per hour if you tried to fix it, and failed.


gwion
wild colonial boy
Premium,ExMod 2001-08
join:2000-12-28
Pittsburgh, PA

reply to BlitzenZeus
Sure. Because it's provided for in the rules. That just automates by wizard the blocking of 137, 138, 139, etc. and makes it easy to add LAN allows in the private trust range. It could be used with the rules, too, as redundency, but it would be -less-, rather than more comprehensive, since the custom rules block 135, too, which wasn't considered imnportant by anybody (except me) until about two months ago when somebody actually did what I've been warning about for years, and exploited that wide open WinRPC endpoint map port...

It's a call... either use the preconfigured or make a rule. But if you use preconfigured, remember, you want to block the DCOM-RPC nonsense, that has no more business on the internet than NetBios traffic...
--
Every knot was once straight rope...
Forums » The Site » Old Forums » Kerio - Tiny Support


Friday, 04-Dec 13:21:49 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [163] Comcast Releasing Promised Usage Meter
· [144] Avast Antivirus Has Gone Mad
· [116] Comcast Makes NBC Universal Acquisition Official
· [104] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [99] Google Invades ISP, OpenDNS Turf With Google Public DNS
· [81] Latest Consumer Reports Survey Not Kind To AT&T
· [73] Sprint Defuses GPS Privacy Media Bomb
· [73] FCC Ponders Moving From PSTN To IP Voice
· [70] Baltimore To Ban Lazy Cable Installs
· [64] Broadband Killed The Game Console
Most people now reading
· False positive in Avast! or is it real? [Security]
· Google takes aim at browser redirection [Security]
· Windows 7 boot manager editing questions [Microsoft Help]
· [Rant] Disrespect of PTO [Rants, Raves, and Praise]
· DNS options, what are YOU using? [TekSavvy]
· Linux is terrorist - according to MS... [All Things Unix]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]
· [WotLK] Doing away w/ conquest? [World of Warcraft]
· An Excellent Guide About Google Voice And Sip Sorcery [VOIP Tech Chat]
· Is Usenet targettable under ACTA? [TekSavvy]