Block dangerous LAN traffic
Originally created by Tails on #5293 (Redmine)
It’s still not clear exactly what we want to do with LAN traffic in general (XXX: this should really have a ticket), but on the short run, at least a minimal blacklist of known-bad traffic should be blocked:
- It was reported that NAT-PMP can be used to discover the LAN’s external IP-address on the Internet.
Team: DrWhax, ? (team mate)