[111541] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: v6 & DSL / Cable modems [was: Private use of non-RFC1918 IP space

daemon@ATHENA.MIT.EDU (Matthew Moyle-Croft)
Sat Feb 7 00:15:46 2009

From: Matthew Moyle-Croft <mmc@internode.com.au>
To: Owen DeLong <owen@delong.com>
In-Reply-To: <ADE430D8-84DA-43C9-97FF-79EB653289DB@delong.com>
Date: Sat, 7 Feb 2009 15:44:51 +1030
Cc: north American Noise and Off-topic Gripes <nanog@merit.edu>
Errors-To: nanog-bounces@nanog.org

Tell ya what Owen,
When you can show me residential grade CPE which has a DECENT stateful  
firewall then PLEASE let me know.

Needs to do other things well, not crash, not cost hundreds of  
dollars, supportable, does VOIP, WIFI etc are manufacturer supported  
etc.   Of course, it needs to do IPv6 as well.

(it's easy to say Owen, but quite frankly, the reality from my side of  
the fence as an operator is that it's not the norm).

MMC

On 07/02/2009, at 2:02 PM, Owen DeLong wrote:

>>
> IPTables is decent firewall code.
>
> It's free.
>
> I don't buy that argument for a second.
>
> Further, since more and more CPE is being built on embedded linux,  
> there's no reason
> that IPTables isn't a perfectly valid approach to the underlying  
> firewall code.
>
> Owen



home help back first fref pref prev next nref lref last post