[112623] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Dynamic IP log retention = 0?

daemon@ATHENA.MIT.EDU (Brett Charbeneau)
Wed Mar 11 12:39:18 2009

Date: Wed, 11 Mar 2009 12:39:01 -0400 (EDT)
From: Brett Charbeneau <brett@wrl.org>
To: Marcus Reid <marcus@blazingdot.com>
In-Reply-To: <20090311155301.GA99262@blazingdot.com>
Cc: nanog@nanog.org
Errors-To: nanog-bounces@nanog.org

On Wed, 11 Mar 2009, Marcus Reid wrote:

MR> A quick scan of the reverse mapping for your address space in DNS reveals
MR> that you have basically your entire network on public addresses.  No wonder
MR> you're worried about portscans when the printer down the hall and the
MR> receptionists machine are sitting on public addresses.  I think you are
MR> trying to secure your network from the wrong end here.

	I apologize to the list for the static - I'm not sure how a question 
about log retention morphed into a misinformed critique of my organization's 
security posture.

-- 
********************************************************************
Brett Charbeneau, GSEC Gold, GCIH Gold
Network Administrator
Williamsburg Regional Library
7770 Croaker Road
Williamsburg, VA 23188-7064
(757)259-4044          www.wrl.org
(757)259-4079 (fax)    brett@wrl.org
********************************************************************



home help back first fref pref prev next nref lref last post