![]() |
Outpost User Operated Support Forum
Agnitum Outpost Pro Release (OP, OSS, AV): 2009 (6.7.3.3058) [08-FEB-2010]
www.agnitum.com |
|
#1
|
|||
|
|||
|
TCP & UDP Inbound/Outbound direction query
I've read that UDP is directionless so that specifying whether it's Inbound or Outbound is pointless. Is this true?
Secondly, when setting rules do you specify Local Port for TCP and Remote Port for UDP? Is this correct? |
|
#2
|
||||
|
||||
|
Re: TCP & UDP Inbound/Outbound direction query
Well, maybe it would be better described as stateless rather than directionless. UDP does know which direction it is going but it performs no error checking. Unlike TCP it's a simple but unreliable protocol. It does no hand shaking, ordering or reliability checks. Consequently, UDP packets can arrive out of order, be duplicated or simply go missing.
The one good thing it does is that it's quick and largely used for the all important DNS queries. The UDP protocol, even though unreliable, is a major factor in using the internet and making it a good experience. Because it is a stateless protocol it's best that direction is left out of the firewall rules but ports are useful since they are defined. It's useful, for instance, to control a DNS response to remort port 53 since that's where it should have come from. This is implied in section D of the Secure Configuration FAQ: http://www.outpostfirewall.com/forum...ead.php?t=9858 Controlling local ports is another matter since they are assigned in a random manner. It's usually best to not include them unless you have a special reason for such tight control.
__________________
Regards, Manny Carvalho Last edited by Manny Carvalho; 11-21-2009 at 04:35 AM. |
![]() |
| Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) | |
| Thread Tools | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| New Configuration Woes | neever | Outpost Firewall General Discussions, Support, and Troubleshooting | 15 | 09-13-2006 09:21 AM |
| Help - receving multiple port scans | goof | Outpost Firewall General Discussions, Support, and Troubleshooting | 4 | 08-07-2006 06:45 PM |
| bitdefender and outpost 2.5 | leodan | Outpost Firewall General Discussions, Support, and Troubleshooting | 10 | 11-26-2005 06:37 AM |
| Serious problem with dial up connection | heyer | Outpost Firewall General Discussions, Support, and Troubleshooting | 5 | 08-03-2005 04:07 PM |
| tcp incoming connection not blocked - morpheus | WizzOzz | Retired Threads | 20 | 12-04-2001 10:06 PM |