nanog mailing list archives
Re: IAB concerns against permanent deployment of edge-based filtering
From: Randy Bush <randy () psg com>
Date: Mon, 20 Oct 2003 07:10:16 -0500
prudent/paranoid folk over the years have persuaded me that it makes the best sense to only run those applications/services that I need to and shut off everything else - until/unless there is a demonstrated need for it.very true for a host, even somewhat true for a site. very untrue for a backbone.there appears to be a disconnect in the wording of the IAB document: it starts: ---- IAB concerns against permanent deployment of edge-based filtering The IAB notes that there ISPs/ASes undertaking permanent deployment of edge-based protocol number/port number packet filtering on traffic received from eBGP peers. ---- it can be viewed from the perspective of a transit provider looking toward its edges, the clients. it can be viewed from the perspective of a multihomed client looking toward its edges, the transit providers. which one you take depends on where you start... :) then there is the idea of "permanent" deployment ... little is permanent in networking. the hard problem is when vendors put filters in silicon. :(
i have been assuming, possibly quite incorrectly, that the iab concern was with backbone providers. possibly this is due to my perspective. imiho, backbones move packets, and the more we muck with them the less happier our customers are. but i filter like hell at my personal site edge, and do try to keep unwanted things off my hosts. randy
Current thread:
- Re: IAB concerns against permanent deployment of edge-based filtering, (continued)
- Re: IAB concerns against permanent deployment of edge-based filtering Leo Bicknell (Oct 18)
- Re: IAB concerns against permanent deployment of edge-based filtering Eric Gauthier (Oct 18)
- Re: IAB concerns against permanent deployment of edge-based filtering Leo Bicknell (Oct 18)
- Re: IAB concerns against permanent deployment of edge-based filtering bmanning (Oct 18)
- Re: IAB concerns against permanent deployment of edge-based filtering Valdis . Kletnieks (Oct 18)
- Re: IAB concerns against permanent deployment of edge-based filtering bmanning (Oct 18)
- Re: IAB concerns against permanent deployment of edge-based filtering Eliot Lear (Oct 18)
- Re: IAB concerns against permanent deployment of edge-based filtering E.B. Dreger (Oct 18)
- Re: IAB concerns against permanent deployment of edge-based filtering Randy Bush (Oct 19)
- Re: IAB concerns against permanent deployment of edge-based filtering bmanning (Oct 20)
- Re: IAB concerns against permanent deployment of edge-based filtering Randy Bush (Oct 20)
- Re: IAB concerns against permanent deployment of edge-based filtering Stephane Bortzmeyer (Oct 20)
- Re: IAB concerns against permanent deployment of edge-based filtering Owen DeLong (Oct 20)
- Re: IAB concerns against permanent deployment of edge-based filtering Howard C. Berkowitz (Oct 20)
- Re: IAB concerns against permanent deployment of edge-based filtering Leo Bicknell (Oct 18)
- Re: IAB concerns against permanent deployment of edge-based filtering Pekka Savola (Oct 18)
- Re: IAB concerns against permanent deployment of edge-based filtering Valdis . Kletnieks (Oct 18)