Security Basics mailing list archives

Re: Removing ping/icmp from a network


From: Ansgar -59cobalt- Wiechers <bugtraq () planetcobalt net>
Date: Thu, 27 Mar 2008 15:34:20 +0100

On 2008-03-27 Ramsdell, Scott wrote:
I'm happy to limit your ability to issue ICMP redirects if you happen
to find yourself inside my LAN, where you're absolutely not authorized
to be.

I suggest you (re-)read RFCs 791 and 792, because seem to be completely
unaware of the fact that there's a whole lot more to ICMP than just echo
request/reply and redirect messages.

Regards
Ansgar Wiechers
-- 
"All vulnerabilities deserve a public fear period prior to patches
becoming available."
--Jason Coombs on Bugtraq


Current thread: