Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 28 Jul 2006 00:26:06 -0300 (ADT)
From:      User Freebsd <freebsd@hub.org>
To:        freebsd-questions@freebsd.org
Subject:   Re: icmp packets - disabling via sysctl, or cisco switch ... ?
Message-ID:  <20060728002433.E17979@ganymede.hub.org>
In-Reply-To: <20060728001202.W17979@ganymede.hub.org>
References:  <20060728001202.W17979@ganymede.hub.org>

next in thread | previous in thread | raw e-mail | index | archive | help

Just an appendum, but this is what I'm seeing in /var/log/messages right 
now:

Jul 28 00:22:37 io kernel: Limiting icmp unreach response from 6255 to 200 packets/sec
Jul 28 00:22:38 io kernel: Limiting icmp unreach response from 6515 to 200 packets/sec
Jul 28 00:22:39 io kernel: Limiting icmp unreach response from 6646 to 200 packets/sec
^C

And its been going on for several hours now ... :(


On Fri, 28 Jul 2006, User Freebsd wrote:

>
> Two part question here ...
>
> first part ... is there a way of just disabling icmp by setting a sysctl, so 
> that a server just doesn't respond to them?
>
> second part ... is there a way of telling a cisco switch to drop all icmp 
> packets, preferrably to all but an exception list, but to everywhere works as 
> well ...
>
> I'm running a Cisco 2950-24 ...
>
> thanks ...
>
> ----
> Marc G. Fournier           Hub.Org Networking Services (http://www.hub.org)
> Email . scrappy@hub.org                              MSN . scrappy@hub.org
> Yahoo . yscrappy               Skype: hub.org        ICQ . 7615664
>

----
Marc G. Fournier           Hub.Org Networking Services (http://www.hub.org)
Email . scrappy@hub.org                              MSN . scrappy@hub.org
Yahoo . yscrappy               Skype: hub.org        ICQ . 7615664



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20060728002433.E17979>