Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 21 Aug 2000 10:28:20 +0200 (MET DST)
From:      Mipam <mipam@ibb.net>
To:        William Wong <willwong@anime.ca>
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: icmptypes
Message-ID:  <Pine.LNX.3.95.1000821102609.7312A-100000@ux1.ibb.net>
In-Reply-To: <004501c00b49$37be2420$0300a8c0@anime.ca>

next in thread | previous in thread | raw e-mail | index | archive | help
Sure sure....

Basically, you just wish to allow icmp requests and icmp reply's (type 8
and 0).
Deny the rest. Also make sure to deny any icmp fragmented packets.
For the rest what you wish to deny or allow is up to you :)
Bye,

Mipam.


On Mon, 21 Aug 2000, William Wong wrote:

> Hi there,
> 
> When building a firewall, is there any advantage to restricting allowed icmp
> types?
> And if there is, which icmptypes should be allowed in at the minimum?
> 
> - Will
> 
> 
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-security" in the body of the message
> 



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.LNX.3.95.1000821102609.7312A-100000>