Re: CISCO ACLs.. Are there lists already out there to protect me from trojans and known bad sites?

From: Austin Murkland (amurkland_at_merydion.com)
Date: 11/09/05

  • Next message: Cam Fischer: "Cisco PIX with SSH enabled on external port for maintenance"
    Date: Wed, 09 Nov 2005 14:38:56 -0800
    To: Pigeon <fredit@charter.net>
    
    

    Pigeon wrote:
    > I just got my first cisco router in (well for home use :) ).. and I
    > want to lock my network down.. Are there any default ACL lists that
    > will block:
    > A) known bad IPs
    > B) trojan ports
    > C) protection against spoofing (aka denying private IP source port
    > incoming in the WAN port)
    >
    > I know I will have to modify whatever I have.. but a general list
    > would be great!
    >
    > thanks!
    >
    http://www.cymru.com/Documents/secure-ios-template.html

    i believe this covers A and C. A for sure, C, i'm pretty sure, and B,
    you'll need to append.

    Austin Murkland


  • Next message: Cam Fischer: "Cisco PIX with SSH enabled on external port for maintenance"