Damus
navi profile picture
navi
@navi
honestly if software were well designed and had sane configuration defaults, we wouldn't really need (basic, port-filtering only) firewalls

basically "why is anything listening on a port in a public interface, if it's not meant to be public"

ofc this thought of mine assumes that everything is perfect, real world is not so those firewalls basically provide some redundancy
2
Laurent Bercot · 2w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqf67qrzm95xe497g0jda70x6uxwr9ru2j39sg38axfj4ff05c979q3gaasw even in 2000 when I learned about configuring a router I was like... why do people keep talking about packet filtering on unused ports? if a port is unused then by definition no service ...
Haelwenn /элвэн/ :triskell: · 2w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqf67qrzm95xe497g0jda70x6uxwr9ru2j39sg38axfj4ff05c979q3gaasw Yeah, I tend to regard firewalls as a clutch/band-aid to bad OS/application design, and it's sometimes annoyingly hard to have one sitting at the right layer. There's few things where I...