[171058] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Requirements for IPv6 Firewalls

daemon@ATHENA.MIT.EDU (Dobbins, Roland)
Thu Apr 17 08:52:16 2014

From: "Dobbins, Roland" <rdobbins@arbor.net>
To: NANOG <nanog@nanog.org>
Date: Thu, 17 Apr 2014 12:51:17 +0000
In-Reply-To: <D512B70CB42ED047A05A7AC11DF0C9C805725178@Westshore-EX1.rseng.net>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org


On Apr 17, 2014, at 7:35 PM, Dustin Jurman <dustin@rseng.net> wrote:

> - packets per second
> 	- Firewall Level
> 	- Hosts level

This is getting into QoS territory . . .

> - packet size information

Concur - packet-length.

> 	- Average for FW of all Network hosts

This isn't very operationally useful, IMHO.

> 	- Negotiated Between Hosts =20

I'm not sure what this means?

But classifiers for everything in the IP, TCP, UDP, and ICMP headers, along=
 with packet length, makes a lot of sense.

-----------------------------------------------------------------------
Roland Dobbins <rdobbins@arbor.net> // <http://www.arbornetworks.com>

	  Luck is the residue of opportunity and design.

		       -- John Milton



home help back first fref pref prev next nref lref last post