On a snort box of mine that connects to the outside world ACID is
reporting bad loopback traffic and the url I am pointed to is below.
Recomending to setup egress filtering.
I have used fwbuilder to build my firewall scripts.
I allow all traffic on my loopback adapter but I do not allow my
loopback out to the outside world from what I can tell.
How can I confirm that I am not allowing loopback traffic out to the
outside world and that egress filtering is in place?
http://www.sans.org/rr/papers/index.php?id=1059
Jim