nanog mailing list archives

Re: Where are static bogon filters appropriate? was: 96.2.0.0/16 Bogons


From: Jon Lewis <jlewis () lewis org>
Date: Thu, 1 Mar 2007 09:32:44 -0500 (EST)


On Thu, 1 Mar 2007, Chris L. Morrow wrote:

So, where are static bogon filters appropriate? (loaded question perhaps)
I ask because just about every 'security expert' and 'security whitepaper'
or 'security suggestions' has some portion that speaks to "why it's a
grand idea to have acl-lines/firewall-policy tp block 'bogon' ip space"
(for some definition of 'bogon' of course).

I suppose they're appropriate when done by network security consultants, as it guarantees future / repeat business. :)

----------------------------------------------------------------------
 Jon Lewis                   |  I route
 Senior Network Engineer     |  therefore you are
 Atlantic Net                |
_________ http://www.lewis.org/~jlewis/pgp for PGP public key_________


Current thread: