[169429] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Filter NTP traffic by packet size?

daemon@ATHENA.MIT.EDU (Nick Hilliard)
Tue Feb 25 14:15:28 2014

X-Envelope-To: nanog@nanog.org
Date: Tue, 25 Feb 2014 19:14:54 +0000
From: Nick Hilliard <nick@foobar.org>
To: "Staudinger, Malcolm" <mstaudinger@corp.earthlink.com>,
 "nanog@nanog.org" <nanog@nanog.org>
In-Reply-To: <d0225d3a502a436e9bbb22d75c219aad@EDGMBXV06.marvel.elnk.net>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On 25/02/2014 17:22, Staudinger, Malcolm wrote:
> Why wouldn't you just block chargen entirely?

While we're at it, why not just block everything except for tcp port 80 and
dns?  Isn't that the only legitimate traffic on the interweb these days?

Nick



home help back first fref pref prev next nref lref last post