Date: Mon, 21 Aug 2000 10:28:20 +0200 (MET DST) From: Mipam <mipam@ibb.net> To: William Wong <willwong@anime.ca> Cc: freebsd-security@FreeBSD.ORG Subject: Re: icmptypes Message-ID: <Pine.LNX.3.95.1000821102609.7312A-100000@ux1.ibb.net> In-Reply-To: <004501c00b49$37be2420$0300a8c0@anime.ca>
next in thread | previous in thread | raw e-mail | index | archive | help
Sure sure.... Basically, you just wish to allow icmp requests and icmp reply's (type 8 and 0). Deny the rest. Also make sure to deny any icmp fragmented packets. For the rest what you wish to deny or allow is up to you :) Bye, Mipam. On Mon, 21 Aug 2000, William Wong wrote: > Hi there, > > When building a firewall, is there any advantage to restricting allowed icmp > types? > And if there is, which icmptypes should be allowed in at the minimum? > > - Will > > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe freebsd-security" in the body of the message > To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.LNX.3.95.1000821102609.7312A-100000>