[95168] in North American Network Operators' Group
Re: Where are static bogon filters appropriate? was: 96.2.0.0/16
daemon@ATHENA.MIT.EDU (Steven M. Bellovin)
Fri Mar 2 16:57:18 2007
Date: Fri, 2 Mar 2007 16:56:24 -0500
From: "Steven M. Bellovin" <smb@cs.columbia.edu>
To: "Eric Ortega" <eric.ortega@midco.net>
Cc: "'Sean Donelan'" <sean@donelan.com>, "'NANOG'" <nanog@merit.edu>
In-Reply-To: <00c401c75d12$eb7d7250$6501a8c0@COM23342>
Errors-To: owner-nanog@merit.edu
On Fri, 2 Mar 2007 15:37:01 -0600
"Eric Ortega" <eric.ortega@midco.net> wrote:
>
> I think Sean raises a good point. I guess the larger picture is what
> are we trying to protect and what are trying to protect that from.
>
Bingo.
The problem isn't with "security people", it's with "security people
who use checklists -- and old ones at that -- in preference to
thinking".
Droids exist in every field....
--Steve Bellovin, http://www.cs.columbia.edu/~smb