this post was submitted on 12 Jan 2026
36 points (97.4% liked)

Explain Like I'm Five

19586 readers
3 users here now

Simplifying Complexity, One Answer at a Time!

Rules

  1. Be respectful and inclusive.
  2. No harassment, hate speech, or trolling.
  3. Engage in constructive discussions.
  4. Share relevant content.
  5. Follow guidelines and moderators' instructions.
  6. Use appropriate language and tone.
  7. Report violations.
  8. Foster a continuous learning environment.

founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] rainwall@piefed.social 2 points 5 days ago (1 children)

Its not even that complicated. Just apply an allowlist firewall that only allows the elites access, or in a full blown outage, power off the core switches at the fiber ingress points.

With SDN, you could even just wipe the configs to disable the internet, and then reapply the config to bring them back up later. Could literally be setup as a "push button" if anyone wanted it configured that way.

[–] BaroqueInMind@piefed.social 1 points 5 days ago (1 children)

A layer 3 firewall whitelist can be bypassed with MAC spoofing or duplication, ARP table poisoning, DHCP lease timestamp forging?

[–] rainwall@piefed.social 1 points 5 days ago* (last edited 5 days ago)

Maybe If you can get to it. Power down all the trunk ports but the palace/military/etc.