nanog mailing list archives

Re: after Cisco IOS exploit patch


From: Jason Frisvold <friz () corp ptd net>
Date: 18 Jul 2003 16:41:59 -0400

On Fri, 2003-07-18 at 14:49, Saxon Jones wrote:
After I upgraded my IOS this morning I've seen 13,844 input errors on
the port; when looking at the switch the router is connected to I see
that a very similar number of multi-cast packets (13,423). 

Has anyone else seen this?  Is this perhaps what the patch does
(register exploit packets as input errors)?

FWIW, we re-tested again to check this..  We put the router under a
heavy load of exploited packets and did not see this..  We tested all 4
protocols.


________________________
saxon jones
network infrastructure admin
interbaun communications
suite 200
18404 stony plain road
edmonton, ab
T5S 2M8
mailto:netadmin () interbaun net
http://www.interbaun.com/
(780) 447-8276

-- 
---------------------------
Jason H. Frisvold
Backbone Engineering Supervisor
Penteledata Engineering
friz () corp ptd net
RedHat Engineer - RHCE # 807302349405893
Cisco Certified - CCNA # CSCO10151622
MySQL Core Certified - ID# 205982910
---------------------------
"Imagination is more important than knowledge.
Knowledge is limited. Imagination encircles
the world."
      -- Albert Einstein [1879-1955]

Attachment: signature.asc
Description: This is a digitally signed message part


Current thread: