[136868] in North American Network Operators' Group
Re: Random Port Blocking at Hotels
daemon@ATHENA.MIT.EDU (Paul Timmins)
Sat Feb 5 23:37:08 2011
Date: Sat, 05 Feb 2011 23:32:26 -0500
From: Paul Timmins <paul@telcodata.us>
To: matthew@matthew.at
In-Reply-To: <4D4E23EF.3050303@matthew.at>
Cc: "John R. Levine" <johnl@iecc.com>, nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
Matthew Kaufman wrote:
> On 2/5/2011 8:15 PM, Paul Timmins wrote:
>> OR just upgrade your gear, and while you're at it, you can now safely
>> enable IPv6 anyway.
>
> Well, enable IPv6. Safely? I don't see how upgrading your gear
> magically makes the various security threats -- including the current
> topic of rogue RAs -- go away.
>
If you upgrade it to something that can filter rogue RA, like I was
showing in the previous two examples, that would address the security
issues.
-Paul