[buug] RPC + Megapath = Dialup

Jon McClintock jammer at weak.org
Wed Aug 20 16:22:35 PDT 2003


On Wed, Aug 20, 2003 at 04:10:14PM -0700, Aaron T Porter wrote:
> On Wed, Aug 20, 2003 at 01:07:53PM -0700, Jon McClintock wrote:
> > I don't think there has been a single security hole relating to ICMP
> > ping traffic.
> 
> 	Smurfing (sort of), PingOfDeath. Certainly none recently though.

Both of those can be filtered out with specific rules, and not broad
level ICMP blocks. IIRC, for smurfing, you block broadcast ping, and for
POD, you block large ICMP messages.

-Jon



More information about the buug mailing list