On Sat, Aug 20, 2011 at 12:38 PM, Grant <emailgr...@gmail.com> wrote: > I like the policy of blocking all ports in and out with a firewall and > only opening the ones you need. Bittorrent makes that difficult since > it connects out to unpredictable ports. Do you block outbound ports > with a firewall or only inbound?
I don't block anything outbound, but my ISP does (mostly MS-stuff that I don't care about). I do, however, occasionally block all outgoing just to see what the logs show, so I'm aware of what's happening. But I don't actively monitor that outbound traffic. I block everything inbound and only open what's specifically needed. I use denyhosts and fail2ban to block bad guys from all ports.