[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
misunderstanding scale (was: Ipv4 end, its fake.)
- Subject: misunderstanding scale (was: Ipv4 end, its fake.)
- From: mark.tinka at seacom.mu (Mark Tinka)
- Date: Sun, 23 Mar 2014 20:48:12 +0200
- In-reply-to: <CABidiT+k2sKKvE4a4z0wWD95=jJz1pN4Vt58HKCZ00ZQmVwgqA@mail.gmail.com>
- References: <[email protected]> <[email protected]> <CABidiT+k2sKKvE4a4z0wWD95=jJz1pN4Vt58HKCZ00ZQmVwgqA@mail.gmail.com>
On Sunday, March 23, 2014 08:27:57 PM Philip Dorr wrote:
> That is what a firewall is for. Drop new inbound
> connections, allow related, and allow outbound. Then
> you allow specific IP/ports to have inbound traffic.
> You may also only allow outbound traffic for specific
> ports, or from your proxy.
How many enterprise installations do you know that favour
firewall use for NAT rather than actual firewalling?
Mark.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: This is a digitally signed message part.
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20140323/b793fa83/attachment.bin>