A B C D E F G H I J K L M N O P Q R S T U V W Z
Ea Eg El Em En Ep Es Et Ev Ex

Egress Filtering

Egress filtering is the restriction or inspection of outbound network traffic leaving a device, subnet, or environment. It matters because attackers often need outbound communication for exfiltration, malware delivery, or command-and-control success.

What is Egress Filtering?

Organizations use egress filtering to reduce data exfiltration, unauthorized protocols, risky destinations, and malware callouts. It is a powerful but sometimes underused control for limiting what compromised systems can do after infection.

What Egress Filtering Commonly Supports

Common uses include data-loss prevention, malware containment, outbound policy enforcement, cloud egress governance, and command-and-control disruption.

Egress Filtering vs. Open Outbound Access

Egress filtering constrains what traffic can leave. Open outbound access gives compromised or careless systems much more freedom to communicate externally.

Frequently Asked Questions

Why is egress filtering important?

Because stopping outbound abuse can limit the damage even after an attacker gets a foothold.

Does egress filtering break applications?

It can if done carelessly, which is why discovery and staged policy design matter.

Related Cybersecurity Terms

George Mutune

I am a cyber security professional with a passion for delivering proactive strategies for day to day operational challenges. I am excited to be working with leading cyber security teams and professionals on projects that involve machine learning & AI solutions to solve the cyberspace menace and cut through inefficiency that plague today's business environments.