1 / 3

Internet facing server logging recommendation

Internet facing server logging recommendation. Alain Durand, Juniper networks. Background. The IPv4 IANA free pool will soon be exhausted ISPs around the world will be deploying NATs Draft-ietf-intarea-shared-addressing-issues explains the issues around logging to deal with abuse/LEA

kyna
Télécharger la présentation

Internet facing server logging recommendation

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. Internet facing serverlogging recommendation Alain Durand, Juniper networks

  2. Background • The IPv4 IANA free pool will soon be exhausted • ISPs around the world will be deploying NATs • Draft-ietf-intarea-shared-addressing-issues explains the issues around logging to deal with abuse/LEA • Logs on the NAT side need to be matched with logs on the server side • Need more specific information on the server side logs than we currently have.

  3. Recommendation (BCP candidate) • It is RECOMMENDED as best current practice that Internet facing servers logging incoming IP addresses also log: • The source port number. • A timestamp accurate to the second, with associated time zone. • The transport protocol (usually TCP or UDP) and destination port number, when the server application is defined to use multiple transports or multiple ports.

More Related