Ben Dale writes:
>set system services ssh port <1024-65535>
>...
>maybe an "allow-sources" might be a bit more useful in this instance?  Less 
>sophisticate
>d users tend to shoot themselves in the foot with firewall filters quite 
>regularly.

Would a firewall filter on lo0 be a better answer for this?
Dropping packets in hardware prevents intruders having any
impact on the RE.

Thanks,
 Phil

_______________________________________________
juniper-nsp mailing list [email protected]
https://puck.nether.net/mailman/listinfo/juniper-nsp

Reply via email to