[113265] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Do we still need Gi Firewall for 3G/UMTS/HSPA network ?

daemon@ATHENA.MIT.EDU (Roland Dobbins)
Thu Apr 9 12:54:03 2009

From: Roland Dobbins <rdobbins@cisco.com>
To: NANOG list <nanog@nanog.org>
In-Reply-To: <alpine.DEB.1.10.0904091815030.29570@uplift.swm.pp.se>
Date: Fri, 10 Apr 2009 00:34:08 +0800
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org


On Apr 10, 2009, at 12:17 AM, Mikael Abrahamsson wrote:

> Todays GGSN and other devices should handle it, even though they  
> didn't do it well 5+ years back.

There's a lot of legacy (and not-so-legacy) gear out there with weak  
IP stacks; beyond that, the relevant BCPs like iACLs should be  
deployed to protect the GGSN, et. al.

-----------------------------------------------------------------------
Roland Dobbins <rdobbins@cisco.com> // +852.9133.2844 mobile

   Our dreams are still big; it's just the future that got small.

		   -- Jason Scott



home help back first fref pref prev next nref lref last post