3 ms·
One more reason to have open-developed, ground-up-built endpoint hardware. I'm surprised there hasn't been a credible Kickstarter or something. People wouldn't
by devindotcom 12y ago
One more reason to have open-developed, ground-up-built endpoint hardware. I'm surprised there hasn't been a credible Kickstarter or something. People wouldn't mind slightly fewer features or lower performance due to reverse engineering an older design - if it meant real, publicly auditable security at that link in the chain. Still lots to do to improve security but that's one that's always seemed neglected to me.
- SwellJoe 12y agoWhile I agree that open hardware is a good idea, Cisco has no malicious intent with NetFlow. It is a legitimate tool for maintaining and improving network quality. This isn't an instance of a vendor providing a back door to the NSA (or whoever). It's an accident of the protocol that it is easier to derive this data from than raw packet sniffing.
- devindotcom 12y agoNo, certainly I don't think them malicious, I'm just surprised the option doesn't exist.
- tedunangst 12y agoWell, you could use an OpenBSD firewall. But then you'll soon discover that it ships with pflow, which is compatible with netflow.