[113323] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Do we still need Gi Firewall for 3G/UMTS/HSPA network ?

daemon@ATHENA.MIT.EDU (Charles Wyble)
Thu Apr 9 19:52:53 2009

Date: Thu, 09 Apr 2009 15:09:05 -0700
From: Charles Wyble <charles@thewybles.com>
To: Skywing <Skywing@valhallalegends.com>
In-Reply-To: <982D8D05B6407A49AD506E6C3AC8E7D6E5092CE6A0@caralain.haven.nynaeve.net>
Cc: NANOG list <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

Yep verizon does indeed filter all unsolicated inbound traffic to the 
EVDO network. It can be a blessing or a curse. :)

Skywing wrote:
> Verizon filters unsolicited inbound traffic for their EVDO customers in my experience.
> 
> - S
> 
> -----Original Message-----
> From: Roland Dobbins <rdobbins@cisco.com>
> Sent: Thursday, April 09, 2009 09:32
> To: NANOG list <nanog@nanog.org>
> Subject: Re: Do we still need Gi Firewall for 3G/UMTS/HSPA network ?
> 
> 
> On Apr 9, 2009, at 11:48 PM, Lee, Steven (NSG Malaysia) wrote:
> 
>> Please share your thought and thanks in advance :)
> 
> No, IMHO.  Most broadband operators don't insert firewalls inline in
> front of their subscribers, and wireless broadband is no different.
> 
> The infrastructure itself must be protected via iACLs, the various
> vendor-specific control-plane protection mechanisms, and so forth, but
> inserting additional state in the middle of everything doesn't buy
> anything, and introduces additional constraints and concerns.
> 
> -----------------------------------------------------------------------
> Roland Dobbins <rdobbins@cisco.com> // +852.9133.2844 mobile
> 
>    Our dreams are still big; it's just the future that got small.
> 
>                    -- Jason Scott
> 
> 
> 


home help back first fref pref prev next nref lref last post