What do you want your ISP to block today?

alex at yuriev.com alex at yuriev.com
Wed Sep 3 20:31:03 UTC 2003


> > Even on Windows they can be used in a much safer fashion (although I would 
> > never attempt it for any of my stuff). It is possible to use IPSec policies 
> > on 2000 and higher to encrypt all traffic on specified ports to specified 
> > hosts/networks and block all other traffic. I bet some people are using 
> > this to join remote locations securely to each other for Windows networking 
> > with these ports and IPSec policies.
> 
> If you explain the difference between "IPSec", "The Web" to
> an end user, and can convince them that they have "enough
> Pentium" for it, you win and don't have to block the ports.

That is rubbish. Users do not care about "IPSec". Neither do they care about
anything else but having everything work. 

> > There are 10 kinds of people in the world. Those who understand binary
> > and those that don't.
> 
> ISPs should either block the mentioned ports, or send out bills in
> binary.

I encourage my competitors to block as many ports as they possibly can,
breaking as many applications as they possibly can, since I would gladly
take have their users to pay me money to provide the service.

Alex




More information about the NANOG mailing list