management interface accessability (was Re: Worm / UDP1434)

Chris Wedgwood cw at f00f.org
Sun Jan 26 17:29:07 UTC 2003


On Sun, Jan 26, 2003 at 01:37:16AM +0000, Paul Vixie wrote:

> ... If you are relying on their ACL's to protect your telnet and
> snmp access, but are otherwise allowing their management interfaces
> to hear traffic from the whole Internet, then you should turn in
> your badge and go back to bagging groceries or whatever it is you
> used to do.

Some would argue this should apply to those exposing MSSQL to the
outside world such that it could even receive malicious port 1434
packets...




  --cw



More information about the NANOG mailing list