> Now I want to make the LAN secure and only allow DNS, HTTP
> and POP access from the LAN to the WAN. So I delete the above
> rule and add the following rules.and define the specifice
> port given below
You will probably find over time that you need rather more rules than those
to deal with websites running on non-standard ports and so on.
I would say that as a bare minimum you will also need HTTPS (443), and SMTP
(25) if you want your users to actually be able to send mail. You will also
need FTP (21) if your users are ever likely to download executables
(drivers, patches, etc.)
Regards,
Chris
--
C.M. Bagnall, Partner, Minotaur
Tel: (07010) 710715 Mobile: (07811) 332969
ICQ: 13350579 AIM: MinotaurUK MSN: minotauruk at hotmail dot com Y!:
Minotaur_Chris
This email is made from 100% recycled electrons |