Vulnerability Development mailing list archives

ICMP and BlackICE (fwd)


From: anon6774 () HUSHMAIL COM
Date: Wed, 6 Sep 2000 08:15:27 -0600


I thoughti would share something i noticed about BlackICE, the popular home
IDS/firewall product by NetworkICE - it cannot be configured to block ICMP.
This is in contrast to TCP and UDP traffic that is governed by rules in
the firewall.ini file.  I contacted Network Ice on this and, several emails
later - they seemed to have trouble grasping the thought i would want to
deny a ping - i was told that i really wouldnt want to block any ICMP traffic
and, that a future release would allow it.

Note - Configuring it to block a specific IP will block ICMP traffic as
well.

-jed

Current thread: