Hacker News new | ask | show | jobs
by serendipitous 1833 days ago
> if your users are untrusted and not under your direct administrative control (e.g. students in a dorm, hotel guests, et c) then default-allow-everything jeopardizes your upstream transit connection (e.g. if they start spamming).

How is that different from an ISP? Or do you think ISPs should also block everything except TCP ports 80 and 443?

1 comments

ISPs throttle and block lots of things. Many residential ISPs block port 25, for example.