Re: ICMP Redirect interpretation

From: Barry Margolin (barmar@genuity.net)
Date: 03/25/02


From: Barry Margolin <barmar@genuity.net>
Date: Mon, 25 Mar 2002 19:21:23 GMT

In article <4b82e88a.0203250132.6ccf058f@posting.google.com>,
bsduser <daryn_lightblade@yahoo.com> wrote:
>I'm not sure how to interpret this .. what are all those "redirect
>host" packets ? does this mean that a.b.c.d is sending the server ICMP
>Redirect packets asking the server to re-route to w.x.y.z ? if so, why

Yes.

>would it be sending them to this host ? a.b.c.d is two hops away, as
>can be seen from the traceroute below :
>
> 1 e.f.g.h (e.f.g.h) 19.689 ms 19.890 ms 19.965 ms
> 2 a.b.c.d (a.b.c.d) 29.956 ms 29.929 ms 29.967 ms
> 3 w.x.y.z (w.x.y.z) 30.019 ms 29.944 ms 29.967 ms

Whenever a router sends a redirect, it *also* forwards the packet to the
alternate router. Since you're ignoring the redirects, a.b.c.d is
effectively two hops away, because it doesn't get the packets until e.f.g.h
forwards to it.

-- 
Barry Margolin, barmar@genuity.net
Genuity, Woburn, MA
*** DON'T SEND TECHNICAL QUESTIONS DIRECTLY TO ME, post them to newsgroups.
Please DON'T copy followups to me -- I'll assume it wasn't posted to the group.



Relevant Pages

  • Small Problem
    ... I need to redirect some packets. ... listening in port 80, because PC A can't use others ports, and PC B ... You have an option to go with a managed service or an enterprise software. ...
    (Pen-Test)
  • Re: Firewall redirect doesnt work any more...
    ... redirect packets that goes through my bridge to a local daemon. ... UDP redirect seems to work with PF: ... but my local daemon never accepts the connection and nc client ... it was the first time I've used jail for squid and also jail are behind the natd. ...
    (freebsd-net)
  • ICMP Redirect interpretation
    ... 36 bytes from a.b.c.d: Redirect Host ... Vr HL TOS Len ID Flg off TTL Pro cks Src Dst ... packets transmitted, 2 packets received, 0% packet loss ...
    (comp.security.unix)
  • iptables -> DNAT & SNAT
    ... i want to redirect everything going to the internet to be redirected ... Chain POSTROUTING (policy ACCEPT 2 packets, ... the firewall, but i will ignore that for now. ...
    (comp.os.linux.security)
  • Re: Do I Have A Firewalled LAN Run By ISP In Between?
    ... from that host while at host ... running a layer within a layer, with a complex network address translation ... application called "Internet Connection Sharing". ... what those packets are for, ...
    (comp.security.firewalls)