[60540] in North American Network Operators' Group
Re: Private port numbers?
daemon@ATHENA.MIT.EDU (Christopher L. Morrow)
Wed Aug 13 18:46:25 2003
Date: Wed, 13 Aug 2003 22:44:32 +0000 (GMT)
From: "Christopher L. Morrow" <chris@UU.NET>
To: Iljitsch van Beijnum <iljitsch@muada.com>
Cc: Crist.Clark@globalstar.com, nanog@merit.edu
In-Reply-To: <214C7EEA-CDCA-11D7-9024-00039388672E@muada.com>
Errors-To: owner-nanog-outgoing@merit.edu
On Wed, 13 Aug 2003, Iljitsch van Beijnum wrote:
>
> It's not the same thing. RFC 1918 and martian addresses aren't supposed
> to be present on the internet, but aren't automatically harmful. Having
> services that are explicitly labeled for internal use be visible to the
> rest of the world is potentially very harmful.
>
I think I'm missing something, how would a locally managed firewall (local
to the end station) not permit this same scenario? (without the added
confusion of private/public ports)