I don’t trust any OS-level firewall or block. Windows has a history of ignoring what users tell it. Therefore I block all connections to Microsoft servers directly on my router itself, and I don’t allow any Windows machines on the network to know the username/password of the router.
Windows doesn't call home only to microsoft.com, and the domains will change over time. Is there a list of domains to block, maybe even a maintained ruleset for the Suricata platform?
Windows doesn't call home only to microsoft.com
Oh, I’m well aware. It’s a nightmare to do that initial blocking.
and the domains will change over time.
The static IPs they own won’t! The monopoly corporations from the early 90s will likely never sell their IP blocks.
Is there a list of domains to block
Gimme a bit; I think I still have a raw text list…
maybe even a maintained ruleset for the Suricata platform
I doubt that. Could a text list be reformatted with a script?
(post is archived)