North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

RE: RFC1918 addresses to permit in for VPN?

  • From: John Fraizer
  • Date: Fri Dec 29 19:06:58 2000

On Fri, 29 Dec 2000, Deron J. Ringen wrote:

> 
> > -----Original Message-----
> > From: [email protected] [mailto:[email protected]]On Behalf Of
> > Simon Lyall
> > Sent: Friday, December 29, 2000 3:03 PM
> > To: [email protected]
> > Subject: Re: RFC1918 addresses to permit in for VPN?
> .
> .
> > One of the companies we work with has 192.168 address for some of the
> > radius servers we have to talk to, we are directly connected to them so
> > it's not a big pain but it's just so ugly.
> .
> .
> That makes perfect sense to me...there is not a better way to protect a box
> from a DOS/hack than to only give it a private address.   Why expose a box
> to the outside world if there is not a need???

Deron,

Ever heard of an access list?  Didn't think so.

> Deron J. Ringen
> Sr. Network Architect
> BellSouth Internet Services

Typical.

---
John Fraizer
EnterZone, Inc