Re: [fw-wiz] dirty packet tricks?

From: Ryan Russell (ryan@securityfocus.com)
Date: 07/11/02


From: Ryan Russell <ryan@securityfocus.com>
To: John McDermott <jjm@jkintl.com>
Date: Thu Jul 11 21:56:02 2002

On Thu, 11 Jul 2002, John McDermott wrote:
> Does this restriction preclude just having the firewall send ICMP
> redirects to the client?

Quick and to-the-point, but my personal experience has been that many IP
stacks don't deal with ICMP redirects very well.

                                                Ryan



Relevant Pages

  • Re: ICMP redirects are baad mkay?
    ... >>I thought I'd announce the availability of a quick primer on ICMP ... >>redirects and why their use should be avoided. ... Hosts do NOT send redirects. ... -4- The paper does not make incorrect statements about RFC1122. ...
    (comp.security.firewalls)
  • ICMP redirects are baad mkay?
    ... I thought I'd announce the availability of a quick primer on ICMP ... redirects and why their use should be avoided. ...
    (comp.security.firewalls)
  • Re: ICMP redirects are baad mkay?
    ... >I thought I'd announce the availability of a quick primer on ICMP ... >redirects and why their use should be avoided. ...
    (comp.security.firewalls)
  • Re: route entries after ICMP redirect
    ... > I've got some problem with route entries that was created after ICMP ... > Our default gateway send ICMP redirect messages if it ... redirects to the end stations should not be required. ...
    (freebsd-questions)
  • Re: Strange PPPoe problem
    ... The new service uses PPPoe - not a problem, or so I thought - I ... have PPPoe on my firewall. ... And if I do PPPoe on the provided D-Link router, ... like icmp 3/4 packets are being dropped somewhere. ...
    (Debian-User)