 
            
            
            
            
                17 Jul
                
                    2003
                
            
            
                17 Jul
                
                '03
                
            
            
            
        
    
                6:13 a.m.
            
        The workaround for transit suggests permitting only tcp, udp, icmp, gre, esp, and ah protocols. Is this sufficient to protect the router itself, or do you have to get hard-nosed with specific ACLs (restricting access to all your possible interface addresses)? Jeff