On my nets, I need to be able to telnet/ssh into the border router, from the inside, to futz with it.
But is there any reason at all to allow anything, aside from some ICMP, to go beyond the ACL on its Internet facing interface -- to get to the router itself, that is? -- Glenn English g...@slsware.com -- To UNSUBSCRIBE, email to debian-user-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/6be8023d-76b5-4978-92c8-4bc102bd5...@slsware.com