Like any blanket security-bypass rule, these default settings are a bad idea, said Mark Curphey, vice president at vulnerability management specialist Foundstone, a part of McAfee.Any firewall, any security device should have a default deny, Curphey said in an interview Tuesday.