[60440] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Port blocking last resort in fight against virus

daemon@ATHENA.MIT.EDU (Randy Bush)
Tue Aug 12 11:41:04 2003

From: Randy Bush <randy@psg.com>
Date: Tue, 12 Aug 2003 08:40:28 -0700
To: Jack Bates <jbates@brightok.net>
Cc: nanog@merit.edu
Errors-To: owner-nanog-outgoing@merit.edu


> Is it just me that feels that blocking a port which is known to be used 
> to perform billions of scans is only proper?

the second, and important part of the, question is whether there
are legitimate packets to that port which want to cross your border.
for 135, i am not aware of any that should cross my site's border
un-tunneled.

randy


home help back first fref pref prev next nref lref last post