Subject: Re: restricting NFS (and associated services) to one IP address
To: None <netbsd-users@netbsd.org>
From: Michael van Elst <mlelstv@serpens.de>
List: netbsd-users
Date: 10/10/2006 05:36:57
smb@cs.columbia.edu ("Steven M. Bellovin") writes:

>The situation is more like this.  I have several machines A, B, and C
>that are exposed to the Internet.

Then it is probably safe to use a "default deny" policy here. Only
expose those services on this interface that should be available
to the internet.

-- 
-- 
                                Michael van Elst
Internet: mlelstv@serpens.de
                                "A potential Snark may lurk in every tree."