[unisog] Sightly OT: Re: [unisog] University virus-writing course?

Valdis.Kletnieks at vt.edu Valdis.Kletnieks at vt.edu
Thu May 29 02:51:45 GMT 2003

On Wed, 28 May 2003 20:59:13 EDT, Phillip G Deneault <deneault at WPI.EDU>  said:

> If they miss(mistyping an IP), or students on either side try to attack
> other unrelated systems(DNS, switches, routers, or other hosts) in an
> attempt to disable or break into the project, I'll need to block those 
> sites and point out the fact that the project is in violation of our AUP, 
> not to mention clean up the mess.  I'd rather not do that and head of the 
> problem at the pass.
> Does anyone have any thoughts this problem?  Does anyone think this is 
> lunacy or that I'm way off base?  I'd like people's 2 cents if they've 
> come across this problem before and possibly what they did to solve it.

Give them each a playground subnet on their campuses using a RFC1918
address space, VPN them together, and then aggressively ingress/egress
filter all the sandbox subnets.  That should suffice.
