i have a watchguard firebox.

application/octet-stream is not allowed. instead i allow by application ext.

application/rar
application/zip
etc

this leads to a problem when remote servers don't list the mime type in the header in a way the fw can understand.

to cut it short, im under the understanding that allowing application/octet-stream is openning up a big hole in security.

can someone explain this to me and set me straight?