Outpost Users Support Forum  
Outpost User Operated Support Forum
Agnitum Outpost Pro Release (OP, OSS, AV): 2009 (6.7.3.3058) [08-FEB-2010]
www.agnitum.com

Go Back   Outpost Users Support Forum > Agnitum Outpost Security Suite / Outpost Firewall/Outpost Antivirus > Outpost Firewall General Discussions, Support, and Troubleshooting

Reply
 
Thread Tools
  #1  
Old 11-20-2009, 10:51 PM
keys keys is offline
Junior Member
 
Join Date: Nov 2006
Posts: 5
TCP & UDP Inbound/Outbound direction query

I've read that UDP is directionless so that specifying whether it's Inbound or Outbound is pointless. Is this true?

Secondly, when setting rules do you specify Local Port for TCP and Remote Port for UDP? Is this correct?
Reply With Quote
  #2  
Old 11-21-2009, 04:27 AM
Manny Carvalho's Avatar
Manny Carvalho Manny Carvalho is offline
Moderator
 
Join Date: Oct 2003
Location: Georgia, USA
Posts: 9,867
Re: TCP & UDP Inbound/Outbound direction query

Well, maybe it would be better described as stateless rather than directionless. UDP does know which direction it is going but it performs no error checking. Unlike TCP it's a simple but unreliable protocol. It does no hand shaking, ordering or reliability checks. Consequently, UDP packets can arrive out of order, be duplicated or simply go missing.

The one good thing it does is that it's quick and largely used for the all important DNS queries. The UDP protocol, even though unreliable, is a major factor in using the internet and making it a good experience.

Because it is a stateless protocol it's best that direction is left out of the firewall rules but ports are useful since they are defined. It's useful, for instance, to control a DNS response to remort port 53 since that's where it should have come from. This is implied in section D of the Secure Configuration FAQ: http://www.outpostfirewall.com/forum...ead.php?t=9858

Controlling local ports is another matter since they are assigned in a random manner. It's usually best to not include them unless you have a special reason for such tight control.
__________________
Regards,
Manny Carvalho

Last edited by Manny Carvalho; 11-21-2009 at 04:35 AM.
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
New Configuration Woes neever Outpost Firewall General Discussions, Support, and Troubleshooting 15 09-13-2006 09:21 AM
Help - receving multiple port scans goof Outpost Firewall General Discussions, Support, and Troubleshooting 4 08-07-2006 06:45 PM
bitdefender and outpost 2.5 leodan Outpost Firewall General Discussions, Support, and Troubleshooting 10 11-26-2005 06:37 AM
Serious problem with dial up connection heyer Outpost Firewall General Discussions, Support, and Troubleshooting 5 08-03-2005 04:07 PM
tcp incoming connection not blocked - morpheus WizzOzz Retired Threads 20 12-04-2001 10:06 PM


All times are GMT -12. The time now is 01:57 AM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.