[169429] in North American Network Operators' Group
Re: Filter NTP traffic by packet size?
daemon@ATHENA.MIT.EDU (Nick Hilliard)
Tue Feb 25 14:15:28 2014
X-Envelope-To: nanog@nanog.org
Date: Tue, 25 Feb 2014 19:14:54 +0000
From: Nick Hilliard <nick@foobar.org>
To: "Staudinger, Malcolm" <mstaudinger@corp.earthlink.com>,
"nanog@nanog.org" <nanog@nanog.org>
In-Reply-To: <d0225d3a502a436e9bbb22d75c219aad@EDGMBXV06.marvel.elnk.net>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
On 25/02/2014 17:22, Staudinger, Malcolm wrote:
> Why wouldn't you just block chargen entirely?
While we're at it, why not just block everything except for tcp port 80 and
dns? Isn't that the only legitimate traffic on the interweb these days?
Nick