[83472] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: zotob - blocking tcp/445

daemon@ATHENA.MIT.EDU (Joe Maimon)
Tue Aug 16 06:57:21 2005

Date: Tue, 16 Aug 2005 06:56:32 -0400
From: Joe Maimon <jmaimon@ttec.com>
To: "Christopher L. Morrow" <christopher.morrow@mci.com>
Cc: "surfer@mauigateway.com" <surfer@resalehost.networksolutions.com>,
	Gadi Evron <ge@linuxbox.org>, nanog list <nanog@merit.edu>
In-Reply-To: <Pine.GSO.4.58.0508152126510.3650@parapet.argfrp.us.uu.net>
Errors-To: owner-nanog@merit.edu




Christopher L. Morrow wrote:
> 
> On Mon, 15 Aug 2005, surfer@mauigateway.com wrote:
> 
> 
>>
>>NetBIOS was never meant to be a WAN protocol, so no problem
>>in blocking it.
> 
> 
> rule #1: do not be the Internet's Firewall
> rule #2: see rule #1
> 
Surely we realize that this discussion is not concerning the oft 
repeated "Internet's Firewall" debate.

Its about containing a potential worm/virus outbreak. Call it a network 
wide quarantine.

The damages inflicted by worms/viruses in the past that we have all seen 
and are still coping with (C&C reports anyone?) are well known.

This is network self preservation. Otherwise the garbage will eventually 
suffocate us all.

Apples and oranges.


home help back first fref pref prev next nref lref last post