To firewall or not to firewall (was: Re: Fragmentation-related security issues)

2012-01-06 Thread Fernando Gont
On 01/05/2012 11:08 PM, Joel M. Halpern wrote: Are we really prepared to say that there can be no new protocosl at the Internet or Transport layer, ever again. Not even new extensions? I'm personally ready to admit that new transport protocols and new IPv4 options are hard to deploy. I do

Re: To firewall or not to firewall (was: Re: Fragmentation-related security issues)

2012-01-06 Thread Jared Mauch
On Jan 5, 2012, at 10:31 PM, Fernando Gont wrote: On 01/05/2012 11:08 PM, Joel M. Halpern wrote: Are we really prepared to say that there can be no new protocosl at the Internet or Transport layer, ever again. Not even new extensions? I'm personally ready to admit that new transport

RE: To firewall or not to firewall (was: Re: Fragmentation-related security issues)

2012-01-06 Thread Templin, Fred L
: Fragmentation-related security issues) On 01/05/2012 11:08 PM, Joel M. Halpern wrote: Are we really prepared to say that there can be no new protocosl at the Internet or Transport layer, ever again. Not even new extensions? I'm personally ready to admit that new transport protocols and new IPv4