Re: [AFMUG] everyone should be blocking SMB ports

2016-09-20 Thread Josh Luthman
*Sent:* Tuesday, September 20, 2016 9:26 AM *To:* af@afmug.com *Subject:* Re: [AFMUG] everyone should be blocking SMB ports We say our customers: You get free unblocked access. So we dont block. If we see a problem we block and notify the customer. *Von:* Af [mailto:af-boun...@afmug.com ] *Im Au

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-20 Thread Paul Stewart
affic not WAN traffic, if someone needs it to go site-to-site, then > it should be inside something like a VPN. > > > From: Stefan Englhardt <mailto:s...@genias.net> > Sent: Tuesday, September 20, 2016 9:26 AM > To: af@afmug.com <mailto:af@afmug.com> > Subject: R

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-20 Thread That One Guy /sarcasm
e. > NetBIOS/SMB is LAN traffic not WAN traffic, if someone needs it to go > site-to-site, then it should be inside something like a VPN. > > > *From:* Stefan Englhardt > *Sent:* Tuesday, September 20, 2016 9:26 AM > *To:* af@afmug.com > *Subject:* Re: [AFMUG] everyone should

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-20 Thread Justin Wilson
net> > Sent: Tuesday, September 20, 2016 9:26 AM > To: af@afmug.com <mailto:af@afmug.com> > Subject: Re: [AFMUG] everyone should be blocking SMB ports > > We say our customers: You get free unblocked access. So we dont block. <> > If we see a problem we block and notify

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-20 Thread Ken Hohhof
, if someone needs it to go site-to-site, then it should be inside something like a VPN. From: Stefan Englhardt Sent: Tuesday, September 20, 2016 9:26 AM To: af@afmug.com Subject: Re: [AFMUG] everyone should be blocking SMB ports We say our customers: You get free unblocked access. So we dont

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-20 Thread Stefan Englhardt
afmug.com> ] On Behalf Of Mike Hammett Sent: Monday, September 19, 2016 11:59 AM To: af@afmug.com <mailto:af@afmug.com> Subject: Re: [AFMUG] everyone should be blocking SMB ports Yes, block. - Mike Hammett <http://www.ics-il.com/> Intelligent Computing Solutions <htt

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-20 Thread Dave
..@afmug.com>] *On Behalf Of *Mike Hammett *Sent:* Monday, September 19, 2016 11:59 AM *To:* af@afmug.com <mailto:af@afmug.com> *Subject:* Re: [AFMUG] everyone should be blocking SMB ports Yes, block. - Mike Hammett Intelligent Computing Solutions &

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-20 Thread Jon Bruce
mmett *Sent:* Monday, September 19, 2016 11:59 AM *To:* af@afmug.com <mailto:af@afmug.com> *Subject:* Re: [AFMUG] everyone should be blocking SMB ports Yes, block. - Mike Hammett Intelligent Computing Solutions <http://www.ics-il.com/> <https:/

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-20 Thread Lewis Bergman
change> > <https://twitter.com/mdwestix> > The Brothers WISP <http://www.thebrotherswisp.com/> > <https://www.facebook.com/thebrotherswisp> > > > <https://www.youtube.com/channel/UCXSdfxQv7SpoRQYNyLwntZg> > ------ > &

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-20 Thread Richard Strittmatter
We block, have for years and years.. Richard Strittmatter From: Af [mailto:af-boun...@afmug.com] On Behalf Of Mike Hammett Sent: Monday, September 19, 2016 11:59 AM To: af@afmug.com Subject: Re: [AFMUG] everyone should be blocking SMB ports Yes, block. - Mike Hammett Intelligent Computing

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-19 Thread Ken Hohhof
kool aid. From: Josh Luthman Sent: Monday, September 19, 2016 12:01 PM To: af@afmug.com Subject: Re: [AFMUG] everyone should be blocking SMB ports There is *NO* reason to not block and countless reasons to block them at your edge. If the customer wants to access these ports they should tunnel in

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-19 Thread George Skorup
We've used the SMB filter on Canopy since day one. On 9/19/2016 12:01 PM, Josh Luthman wrote: There is *NO* reason to not block and countless reasons to block them at your edge. If the customer wants to access these ports they should tunnel in. Josh Luthman Office: 937-552-2340 Direct: 937-5

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-19 Thread Ken Hohhof
: [AFMUG] everyone should be blocking SMB ports My work has its own IP address and get upstream from atnt and charter. The smb ports are not blocked. Zach Underwood (RHCE,RHCSA,RHCT,UACA) http://ZachUnderwood.me advance-networking.com On Sep 19, 2016 12:47 PM, "Josh Luthman" wrote

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-19 Thread Josh Luthman
There is *NO* reason to not block and countless reasons to block them at your edge. If the customer wants to access these ports they should tunnel in. Josh Luthman Office: 937-552-2340 Direct: 937-552-2343 1100 Wayne St Suite 1337 Troy, OH 45373 On Mon, Sep 19, 2016 at 12:57 PM, That One Guy /s

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-19 Thread Mike Hammett
" To: af@afmug.com Sent: Monday, September 19, 2016 11:57:44 AM Subject: Re: [AFMUG] everyone should be blocking SMB ports Whats the WISP consensus on blocking those ports at the edge? also, whats the best religion? if Ford or Chevy better? Whats the greatest sports team? On Mon, Sep 19

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-19 Thread Mike Hammett
Yes, block. - Mike Hammett Intelligent Computing Solutions Midwest Internet Exchange The Brothers WISP - Original Message - From: "That One Guy /sarcasm" To: af@afmug.com Sent: Monday, September 19, 2016 11:57:44 AM Subject: Re: [AFMUG] everyone should b

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-19 Thread That One Guy /sarcasm
Whats the WISP consensus on blocking those ports at the edge? also, whats the best religion? if Ford or Chevy better? Whats the greatest sports team? On Mon, Sep 19, 2016 at 11:50 AM, Zach Underwood wrote: > My work has its own IP address and get upstream from atnt and charter. The > smb ports a

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-19 Thread Zach Underwood
My work has its own IP address and get upstream from atnt and charter. The smb ports are not blocked. Zach Underwood (RHCE,RHCSA,RHCT,UACA) http://ZachUnderwood.me advance-networking.com On Sep 19, 2016 12:47 PM, "Josh Luthman" wrote: > Cable/Telco probably. > > WISP? I dunno... > > > Josh

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-19 Thread Josh Luthman
Cable/Telco probably. WISP? I dunno... Josh Luthman Office: 937-552-2340 Direct: 937-552-2343 1100 Wayne St Suite 1337 Troy, OH 45373 On Mon, Sep 19, 2016 at 12:47 PM, Sean Heskett wrote: > i think everyone has been blocking those ports since 1998-ish (or at least > you should be) > > -sean

Re: [AFMUG] everyone should be blocking SMB ports

2016-09-19 Thread Sean Heskett
i think everyone has been blocking those ports since 1998-ish (or at least you should be) -sean On Mon, Sep 19, 2016 at 10:22 AM, Zach Underwood wrote: > This was written from the view point of windows AD setup can affect home > users too since MS makes people use MS live accounts to log in t