[95133] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Where are static bogon filters appropriate? was: 96.2.0.0/16

daemon@ATHENA.MIT.EDU (Jon Lewis)
Thu Mar 1 09:36:46 2007

Date: Thu, 1 Mar 2007 09:32:44 -0500 (EST)
From: Jon Lewis <jlewis@lewis.org>
To: "Chris L. Morrow" <christopher.morrow@verizonbusiness.com>
Cc: Eric Ortega <eric.ortega@midco.net>, nanog@merit.edu
In-Reply-To: <Pine.GSO.4.58.0703011420400.3626@marvin.argfrp.us.uu.net>
Errors-To: owner-nanog@merit.edu


On Thu, 1 Mar 2007, Chris L. Morrow wrote:

> So, where are static bogon filters appropriate? (loaded question perhaps)
> I ask because just about every 'security expert' and 'security whitepaper'
> or 'security suggestions' has some portion that speaks to "why it's a
> grand idea to have acl-lines/firewall-policy tp block 'bogon' ip space"
> (for some definition of 'bogon' of course).

I suppose they're appropriate when done by network security consultants, 
as it guarantees future / repeat business.  :)

----------------------------------------------------------------------
  Jon Lewis                   |  I route
  Senior Network Engineer     |  therefore you are
  Atlantic Net                |
_________ http://www.lewis.org/~jlewis/pgp for PGP public key_________

home help back first fref pref prev next nref lref last post