• @kinther
    link
    English
    9
    edit-2
    9 months ago

    At least have a source IP access list only allowing trusted IP ranges. Ideally it would only be reached from an internal IP range or bastion host, but not all companies have a security hat to wear.

    • P03 Locke
      link
      fedilink
      English
      79 months ago

      but not all companies have a security hat to wear.

      This is the barest of minimalistic security. It’s a router. You don’t allow external admin access to the router. Period. End of story.

      • @kinther
        link
        English
        49 months ago

        I dont disagree with you if a company has a competent employee configuring them.

        • P03 Locke
          link
          fedilink
          English
          19 months ago

          It shouldn’t even be allowed by the router software.