Firewalls - Ease of Use and Maintenance?

Valdis.Kletnieks at vt.edu Valdis.Kletnieks at vt.edu
Wed Nov 9 18:29:43 UTC 2011


On Wed, 09 Nov 2011 08:00:01 CST, Joe Greco said:
> > On Wed, Nov 09, 2011 at 03:32:45PM +0300, Alex Nderitu wrote:
> > > An important feature lacking for now as far as I know is content/web
> > > filtering especially for corporates wishing to block
> > > inappropriate/time wasting content like facebook. 

> > 1. That's not a firewall function.  That's a censorship function.

> Is it "censorship" not to want unwanted connection attempts to our
> gear, and block unsolicited TCP connections inbound?

> Is it "censorship" not to want unwanted exploit attempts to our
> gear, and run everything through ClamAV, and use blocklists to
> prevent users inadvertently pulling content from known malware sites?

I do believe that Alex was saying "blocking outbound access to time wasters
like Facebook" is a censorship function, not a firewall function.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 227 bytes
Desc: not available
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20111109/ee248022/attachment.sig>


More information about the NANOG mailing list