[170417] in North American Network Operators' Group
Access Lists for Subscriber facing ports?
daemon@ATHENA.MIT.EDU (Shawn L)
Thu Mar 27 08:52:07 2014
Date: Thu, 27 Mar 2014 08:44:18 -0400
From: Shawn L <shawnl@up.net>
To: nanog <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
With all of the new worms / denial of service / exploits, etc. that are
coming out, I'm wondering what others are using for access-lists on
residential subscriber-facing ports.
We've always taken the stance of 'allow unless there is a compelling reason
not to', but with everything that is coming out lately, I'm not sure that's
the correct position any more.
thanks