Ben Dale writes: >set system services ssh port <1024-65535> >... >maybe an "allow-sources" might be a bit more useful in this instance? Less >sophisticate >d users tend to shoot themselves in the foot with firewall filters quite >regularly.
Would a firewall filter on lo0 be a better answer for this? Dropping packets in hardware prevents intruders having any impact on the RE. Thanks, Phil _______________________________________________ juniper-nsp mailing list [email protected] https://puck.nether.net/mailman/listinfo/juniper-nsp

