misunderstanding scale (was: Ipv4 end, its fake.)

Mark Tinka mark.tinka at seacom.mu
Sun Mar 23 18:48:12 UTC 2014


On Sunday, March 23, 2014 08:27:57 PM Philip Dorr wrote:
 
> That is what a firewall is for.  Drop new inbound
> connections, allow related, and allow outbound.  Then
> you allow specific IP/ports to have inbound traffic. 
> You may also only allow outbound traffic for specific
> ports, or from your proxy.

How many enterprise installations do you know that favour 
firewall use for NAT rather than actual firewalling?

Mark.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: This is a digitally signed message part.
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20140323/b793fa83/attachment.bin>


More information about the NANOG mailing list