Re: Removing ping/icmp from a network
- From: Secure This <lists@xxxxxxxxxxxxxx>
- Date: Wed, 26 Mar 2008 12:13:03 +0000
Jon R. Kibler wrote:
Secure This wrote:Thanks Jon, I have plenty of ways of blocking ICMP, but I'm looking for ways of reducing it or working without it.I have a variety of clients with data centres who all make use of icmp/ping to monitor their servers/appliances/devices (often with poorly configured snmp versions 1 and 2).
Could anybody kindly advise me of tools and strategies for minimising or removing the use of icmp/ping on a supposedly secure network?
Thanks in advance
If you have any switches with layer 3 capabilities, block all icmp traffic
in ACLs. For example, from a Cisco 3750:
Many thanks.
- Follow-Ups:
- DoD aproved disk wiping tool
- From: JP Vicente
- DoD aproved disk wiping tool
- References:
- Removing ping/icmp from a network
- From: Secure This
- Re: Removing ping/icmp from a network
- From: Jon R. Kibler
- Removing ping/icmp from a network
- Prev by Date: Re: ISSMP Certificate
- Next by Date: Re: Removing ping/icmp from a network
- Previous by thread: Re: Removing ping/icmp from a network
- Next by thread: DoD aproved disk wiping tool
- Index(es):
Relevant Pages
|