Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 12 Nov 1999 11:14:49 -0500
From:      Mike Tancsa <mike@sentex.net>
To:        freebsd-security@freebsd.org
Subject:   safe protocols to eat via ipfw
Message-ID:  <3.0.5.32.19991112111449.00b273f0@staff.sentex.ca>

next in thread | raw e-mail | index | archive | help

Apart from dropping spoofed addresses, what ICMP types do people generally
block at their borders ?  I noticed a lot of redirects coming at my dialups
this morning from the outside world.... 
is  deny icmp from any to any in recv <external interface> icmptype 5
a good thing to do ? Does it break anything ?

	---Mike
------------------------------------------------------------------------
Mike Tancsa,                          	          tel 01.519.651.3400
Network Administrator,     			  mike@sentex.net
Sentex Communications                 		  www.sentex.net
Cambridge, Ontario Canada


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3.0.5.32.19991112111449.00b273f0>