  Nightfall My Goal Is To Deny Yours Premium,MVM join:2001-08-03 Grand Rapids, MI
·Site5.com
·AT&T Midwest
·Comcast
| Blame the morons who don't secure their systems
As much as I want to blame the ISP, this isn't their fault. The problem is the fact that the common users don't secure their systems. Then, when thousands of zombied PCs are spamming the general population, you hear a lot of tough talk coming from the people here. Shut down their internet access! Do something to stop the flow of spam! Well, when they do something about it, everyone bitches.
To be honest, it is easier to do a blanket block of port 25. The simple fact of the matter is that there are people out there that run their own mail servers and don't secure them. These wannabe administrators make a bad name for those of us who take security seriously. It is a couple bad apples that will ruin it for the rest of us.
As a rule, I would close down port 25, 80, and other ports that cause problems as default. If a user wanted those open, I would make sure they signed a waiver stating if their system was comprimised, their access would be shut off at a moments notice. That way, security pros would make sure to keep up with the patches, while those morons who don't take it seriously would have no access and LEARN how to patch when their access gets shut off.
I know, it is a pretty basic plan, but it is a shame that some of these ISPs don't come up with a similar plan. -- My Domain Nightfall's Hockey and Life Journal |