I got a question. I have configured a server to serve as a firewall and provide MASQ connection to the internet. Now after I have set my default input policy to DENY nobody can connect the internet via any service (www,ftp, etc...). But after I allowed input for port 1023:65535 everything seems to work fine. Is there something that I have missed as allowing 1023:65535 is making a big hole in the firewall. My intention for the DENY as the default input policy is to allow what I permit and DENY everything by default. ------------------------------------------------------------------------ To unsubscribe email security-discuss-request@linuxsecurity.com with "unsubscribe" in the subject of the message.