FRidh has quit [Remote host closed the connection]
<gchristensen>
I'm not sure we really can do much
<andi->
Well we have in other cases also decided to set certain defaults.
<gchristensen>
yeah
<andi->
Because those seem sane compared to the upstream defaults
<andi->
That is mostly what I am asking here
<gchristensen>
it is a pretty clever exploit
<danderson>
personal opinion: NATs are not security devices. Therefore, this hack is cool, but working as intended. End-host firewalls would stop this attack just fine.
<danderson>
disabling ALGs by default on routers might help a little bit, but honestly it's more likely to generate bug reports that VoIP is brokn
<andi->
danderson: Yeah, I agree with that.
<andi->
I hope we see a few smart doormats with ransomware. Maybe that helps with awareness :D
FRidh has joined #nixos-security
zarco has joined #nixos-security
<__red__>
concur
<__red__>
the world needs more smart doormats
<__red__>
:-)
tv has quit [Read error: Connection reset by peer]