FWIW, we have the same setup where I am.  The last place I was at the network 
guys were planning to do the same thing.

--Bryan

--  Bryan Blackwell --
Unix Systems Engineer
br...@skiblack.com

On Apr 28, 2010, at 4:54 PM, Simon Hobson wrote:

>> Why, are you blocking outbound rsync traffic?  If so, after 3 years of 
>> maintaining this script and many thousands of users, this is the first time 
>> I've heard this request.
> 
> Some of do this by default - set an outbound policy of block and allow 
> specific traffic that's allowed. It means that should a machine get 
> compromised despite all other precautions, it can't* then be used to launch 
> an attack on others (or other servers in your own network) and/or is unable 
> to communicate with it's control centre. Just another layer of security.

_______________________________________________
Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net
http://www.clamav.net/support/ml

Reply via email to