Hardening Network Infrastructure. Bulletproof Your Systems Before You Are Hacked.

Properly implemented access control lists (ACLs) on your routers provide packet-filtering capabilities without the stateful functionality of a full-featured firewall. Consequently, I think of ACLs on routers as being part of a firewall system, where the router is performing initial packet-filtering functionality in front of a firewall that is providing the full-bore stateful filtering or application proxy functionality. Implementing ACLs, including specific examples, will be covered in much more detail in Chapter 6. However, here are some types of access you should filter with your ACLs immediately:

Категории