Customer-facing ACLs

Scott Weeks surfer at mauigateway.com
Fri Mar 7 23:57:13 UTC 2008




--- dave.nanog at alfordmedia.com wrote:

> To me there is no question of whether or not you filter traffic for
> residential broadband customers.

SBC in my area (Dallas) went from wide open to outbound 25 blocked by
default/opened on request. I think doing the same thing with port 22 would
hardly be an undue burden on users, and would help keep botnets in check.
------------------------------------------------


Might as well do TCP 20, 21 and 23, too.  Woah, that slope's getting slippery!

scott




More information about the NANOG mailing list