nanog mailing list archives
Re: source filtering
From: "Craig A. Huegen" <chuegen () quadrunner com>
Date: Tue, 12 Jan 1999 10:58:17 -0800
On Tue, Jan 12, 1999 at 06:25:47PM +0000, Alex Bligh wrote: ==>Is UDP smurf much in evidence? (send a UDP packet to the broadcast address ==>on the echo server port and you'll either get ICMP port unreachables ==>back or UDP echos). The reason I ask is that edge ICMP rate ==>limiting won't help UDP. People are still preferring ICMP smurfs as the reflection is usually greater. With that said, you can use a line like the following to filter UDP echo smurfs at the network border; it won't affect other UDP traffic. access-list 101 permit udp any eq 7 any /cah
Current thread:
- source filtering Jared Mauch (Jan 12)
- Re: source filtering Alex Bligh (Jan 12)
- Re: source filtering Jared Mauch (Jan 12)
- Re: source filtering Alex Bligh (Jan 12)
- Re: source filtering Dan Hollis (Jan 12)
- Re: source filtering Craig A. Huegen (Jan 12)
- Re: source filtering Craig A. Huegen (Jan 12)
- Re: source filtering Dan Hollis (Jan 12)
- Re: source filtering Daniel Senie (Jan 12)
- Re: source filtering Jared Mauch (Jan 12)
- Re: source filtering Dalvenjah FoxFire (Jan 12)
- Re: source filtering Alex Bligh (Jan 12)
- Re: source filtering Phillip Vandry (Jan 12)
- <Possible follow-ups>
- Re: source filtering prue (Jan 12)
- Re: source filtering Alex P. Rudnev (Jan 13)
- RE: source filtering Scott McGrath (Jan 13)
- Message not available
- Re: source filtering Tony Tauber (Jan 13)
- Message not available
- Re: source filtering Jay R. Ashworth (Jan 16)
- Message not available