Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

What about applying these rules also for egress traffic? #20

Open
gparmeggiani opened this issue Dec 26, 2020 · 1 comment
Open

What about applying these rules also for egress traffic? #20

gparmeggiani opened this issue Dec 26, 2020 · 1 comment

Comments

@gparmeggiani
Copy link

I'm thinking of the specific case of a malware talking to its C&C server via UDP. These rules won't block the upload traffic. Given the growing number of ransomware with the goal of stealing private data, a upload-only UDP connection should be enough for them for their job.

@WaterByWind
Copy link
Owner

The rules can apply wherever you apply them - that is entirely up to you.

If you want to add a rule to the 'out' direction on an interface (such as your WAN) then you absolutely can do so. There is nothing preventing that.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants