nanog mailing list archives

RE: RFC1918 addresses to permit in for VPN?


From: John Fraizer <nanog () EnterZone Net>
Date: Fri, 29 Dec 2000 19:01:12 -0500 (EST)


On Fri, 29 Dec 2000, Deron J. Ringen wrote:


-----Original Message-----
From: owner-nanog () merit edu [mailto:owner-nanog () merit edu]On Behalf Of
Simon Lyall
Sent: Friday, December 29, 2000 3:03 PM
To: nanog () merit edu
Subject: Re: RFC1918 addresses to permit in for VPN?
.
.
One of the companies we work with has 192.168 address for some of the
radius servers we have to talk to, we are directly connected to them so
it's not a big pain but it's just so ugly.
.
.
That makes perfect sense to me...there is not a better way to protect a box
from a DOS/hack than to only give it a private address.   Why expose a box
to the outside world if there is not a need???

Deron,

Ever heard of an access list?  Didn't think so.

Deron J. Ringen
Sr. Network Architect
BellSouth Internet Services

Typical.

---
John Fraizer
EnterZone, Inc





Current thread: