[112623] in North American Network Operators' Group
Re: Dynamic IP log retention = 0?
daemon@ATHENA.MIT.EDU (Brett Charbeneau)
Wed Mar 11 12:39:18 2009
Date: Wed, 11 Mar 2009 12:39:01 -0400 (EDT)
From: Brett Charbeneau <brett@wrl.org>
To: Marcus Reid <marcus@blazingdot.com>
In-Reply-To: <20090311155301.GA99262@blazingdot.com>
Cc: nanog@nanog.org
Errors-To: nanog-bounces@nanog.org
On Wed, 11 Mar 2009, Marcus Reid wrote:
MR> A quick scan of the reverse mapping for your address space in DNS reveals
MR> that you have basically your entire network on public addresses. No wonder
MR> you're worried about portscans when the printer down the hall and the
MR> receptionists machine are sitting on public addresses. I think you are
MR> trying to secure your network from the wrong end here.
I apologize to the list for the static - I'm not sure how a question
about log retention morphed into a misinformed critique of my organization's
security posture.
--
********************************************************************
Brett Charbeneau, GSEC Gold, GCIH Gold
Network Administrator
Williamsburg Regional Library
7770 Croaker Road
Williamsburg, VA 23188-7064
(757)259-4044 www.wrl.org
(757)259-4079 (fax) brett@wrl.org
********************************************************************