I'm thinking maybe I better block outbound traffic on these ports too. Does doing this make any sense?
Very good idea in case you get an infection via e-mail or web browsing. You could also set up triggers so that you get some kind of notice when certain traffic attempts outbound connections.
Is there a way I can just monitor traffic on these ports for a while to get a sense of what is happening on my network?
Etherape to view in real time the network protocols and ethreal for packet analysis.
Sincerely,
R. McFarlane
cross platform specialist Mac - Linux - windows
McFarlane Computing
on-site/remote tutorials, support & training
(phone) 391-8972
(fax) 391-8972
(pager) 413-8577
(email) techie @ mcfarlanecomputing . net