nanog mailing list archives
BCP38 and Red Hat
From: Stephen Satchell <list () satchell net>
Date: Thu, 15 Dec 2016 06:48:13 -0800
https://bugzilla.redhat.com/show_bug.cgi?id=1370963 Just a reminder that I have a feature request outstanding with Red Hat to add support for BCP38, as well as measures for certain protocol-based amplification reflection attacks. My intent for making the suggestion is to stiffen firewalld(8) in Red Hat Enterprise and clones, particularly when an RHEL-based box is used as an edge router or firewall box. I've looked at firewalld, and it would be easy to add *some* of BCP38 into it rather quickly...assuming that the developers step up to the plate. There are parts of BCP38 that won't be so easy to do, given the architecture of the package. In my spare time, by the way, I'm working on a BCP-compilant firewall generator for IPTABLES. Spare time? Well, that *is* a bit of a laugh...
Current thread:
- BCP38 and Red Hat Stephen Satchell (Dec 15)
- Re: BCP38 and Red Hat Christopher Morrow (Dec 15)