[80301] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Schneier: ISPs should bear security burden

daemon@ATHENA.MIT.EDU (Iljitsch van Beijnum)
Thu Apr 28 11:43:38 2005

In-Reply-To: <Pine.CYG.4.58.0504280918290.3260@citabria>
Cc: NANOG list <nanog@merit.edu>
From: Iljitsch van Beijnum <iljitsch@muada.com>
Date: Thu, 28 Apr 2005 17:43:02 +0200
To: Adi Linden <adil@adis.on.ca>
Errors-To: owner-nanog@merit.edu


On 28-apr-2005, at 16:21, Adi Linden wrote:

>> So I do I obtain your permission to send you a packet?

> By replying to my request.

So ask your ISP to NAT you. (Most people do this themselves but you  
seem to feel filtering out unwanted packets isn't something you want  
to do.) You won't receive any packets that aren't responses to your  
request, so you'll be be very happy that way.

Of course you can't use VoIP reliably or engage in other peer-to-peer  
protocols with others who feel the same way.

>> And where in the packet does it show that the packet comes from
>> someone who has said permission?

> The packet only exists if it is in response to my request. Keep in  
> mind
> that I am talking about enduser PC here.

I guess there are people who are happy with always being the  
requester and never being the requestee... Fortunately that isn't  
true for the entire population.

home help back first fref pref prev next nref lref last post