Forum Overview
::
Motherfucking News
::
Is the Linksys blackholing all incoming traffic or not?
[quote name="Senor Barborito"]Well? See, between every Windows/Linux machine V and I have, there is a Pentium 200MHz OpenBSD firewall that has, basically, one job. Every packet that comes in on the line, that wasn't a response to a packet sent out by one of the computers behind the firewall, is dropped. Not just 'sorry, this port firewalled', violation-of-RFC blackholed which means that you can't ping the firewall, let alone connect to the machines. Almost all routers have this ability, and since MSBlaster can't connect to your network entirely without you specifically requesting it (which it has no funcationality/capability for) you're immune by default. This applies to most Internet worms in general. I'm approaching 4 years now since my last virus/worm/infection of any kind (the last one was when I ran Red Hat Linux and apparently got hacked (?), which was when I started getting into OpenBSD). The site on the other hand, being run on OpenBSD, needs no external firewall - it basically replicates the functionality of the above AND a webserver AND the forum DB on a P3 700 192MB RAM machine. The new machine for the site will be a Pentium4 1.7GHz/1GB RAM machine, but it's going to be shared with a slew of other accounts. Fortunately, we use about 10% of the proc of our current rig on average so we'll be fine. My only concern is space. --SB[/quote]