[113265] in North American Network Operators' Group
Re: Do we still need Gi Firewall for 3G/UMTS/HSPA network ?
daemon@ATHENA.MIT.EDU (Roland Dobbins)
Thu Apr 9 12:54:03 2009
From: Roland Dobbins <rdobbins@cisco.com>
To: NANOG list <nanog@nanog.org>
In-Reply-To: <alpine.DEB.1.10.0904091815030.29570@uplift.swm.pp.se>
Date: Fri, 10 Apr 2009 00:34:08 +0800
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
On Apr 10, 2009, at 12:17 AM, Mikael Abrahamsson wrote:
> Todays GGSN and other devices should handle it, even though they
> didn't do it well 5+ years back.
There's a lot of legacy (and not-so-legacy) gear out there with weak
IP stacks; beyond that, the relevant BCPs like iACLs should be
deployed to protect the GGSN, et. al.
-----------------------------------------------------------------------
Roland Dobbins <rdobbins@cisco.com> // +852.9133.2844 mobile
Our dreams are still big; it's just the future that got small.
-- Jason Scott