3 ms·
There has to be a route to where the LLM is running, and if there's a route for that there's probably a way for the machine to use it to route traffic somewhere
by onion2k 10d ago
There has to be a route to where the LLM is running, and if there's a route for that there's probably a way for the machine to use it to route traffic somewhere else.
- rurban 10d agoNo, just allow the firewall to access the LLM endpoint, nothing else. And protect the firewall settings from the agent.
- dns_snek 10d agoThere doesn't have to be. You can easily block all outbound traffic, or the VM can exist without any network interface at all - you can control it through its host using a serial console.