Full Disclosure mailing list archives

Re: [SPAM] Your daily internet traffic report


From: "Gary E. Miller" <gem () rellim com>
Date: Sun, 17 Oct 2004 18:30:56 -0700 (PDT)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Yo Michal!


On Sun, 17 Oct 2004, Michal Zalewski wrote:

To those who seek to block ICMP, I say: "Let them."  I'm sure that a
certain Mr. Charles Darwin will soon sort them out.

What if I just don't set DF on my outgoing traffic, and block incoming
ICMP?

Then folks that use tunnels will not be able to exchange packets
with you.  A lot more people are using tunnels these days.  Like
PPPoE, OpenVPN, etc.

Also a lot of ISPs still force 576 MTU on dial-ups.  These folks also
will not be reachable.

I use OpenVPN and occasionally can not reach web servers set up as
you suggest.

RGDS
GARY
- ---------------------------------------------------------------------------
Gary E. Miller Rellim 20340 Empire Blvd, Suite E-3, Bend, OR 97701
        gem () rellim com  Tel:+1(541)382-8588 Fax: +1(541)382-8676
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)

iD8DBQFBcxzT8KZibdeR3qURAsRwAJsGLNiNMdxo++Yd6hQKQuEYoZYRrwCdFpL6
DEGcj4LFmuRhSygcwg+oXGw=
=FvpQ
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: