Re: What's a reasonable attack surface? (was: Re: wet-behind-the-ears whippersnapper yada yada)

2011-09-21 Thread Keegan Holley
I think people tend to go overboard in the planning phases for something like this. I remember rumors of a certain large ISP getting along fine for several years installing routers with a password like getsmein. There are plenty of groups that publish guidelines on ISP configuration as well as a

What's a reasonable attack surface? (was: Re: wet-behind-the-ears whippersnapper yada yada)

2011-09-20 Thread Jay Ashworth
- Original Message - From: Valdis Kletnieks valdis.kletni...@vt.edu As long as there is *A* failure mode? Hmm. invents a movie-plot failure mode involving crazed ninjas with katanas loose in a switch room at one provider. Yep, it's unlikely crazed ninjas will attack the switch rooms