[60440] in North American Network Operators' Group
Re: Port blocking last resort in fight against virus
daemon@ATHENA.MIT.EDU (Randy Bush)
Tue Aug 12 11:41:04 2003
From: Randy Bush <randy@psg.com>
Date: Tue, 12 Aug 2003 08:40:28 -0700
To: Jack Bates <jbates@brightok.net>
Cc: nanog@merit.edu
Errors-To: owner-nanog-outgoing@merit.edu
> Is it just me that feels that blocking a port which is known to be used
> to perform billions of scans is only proper?
the second, and important part of the, question is whether there
are legitimate packets to that port which want to cross your border.
for 135, i am not aware of any that should cross my site's border
un-tunneled.
randy