On Thu, Jan 22, 2009 at 8:37 AM, Steve Laurie <st...@foo-unix.org> wrote:

> I was wondering if someone could tell me why there's a need to write
> a rule to block addresses that come under the private address space if
> these addresses aren't routable over the Internet?

Even if they aren't routed over the Internet, they may well be present
within the "local" network environment provided by your ISP.  The
miscreant next door is just as dangerous (potentially) as the
miscreant on the other side of the planet.

Besides, it's a "cheap" bit of protection, so why not do it?

-- 
Dave K
Unix Systems & Network Administrator
Mount Laurel NJ

Reply via email to