All of lore.kernel.org
 help / color / mirror / Atom feed
* RELATED ICMP packets of type 3
@ 2005-02-11 14:57 Mikhail Zotov
  2005-02-11 15:06 ` Jason Opperisano
  2005-02-11 15:27 ` Cedric Blancher
  0 siblings, 2 replies; 12+ messages in thread
From: Mikhail Zotov @ 2005-02-11 14:57 UTC (permalink / raw)
  To: netfilter

Hello everybody,

I have written an iptables script to protect a machine/LAN
and I'd like to clarify an issue about RELATED ICMP packets
of type 3 (actually, mostly 3/1).

As far as I understand, it is safe to ACCEPT incoming
packets of this sort.
Is it safe to allow _outgoing_ packets of this kind?
Can an attacker make my machine generate such packets
in order to obtain information about it?  (All new
incoming packets are just DROPped.)


TIA,

Mikhail



^ permalink raw reply	[flat|nested] 12+ messages in thread

end of thread, other threads:[~2005-02-11 16:21 UTC | newest]

Thread overview: 12+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2005-02-11 14:57 RELATED ICMP packets of type 3 Mikhail Zotov
2005-02-11 15:06 ` Jason Opperisano
2005-02-11 15:34   ` [OBORONA-SPAM] " Mikhail Zotov
2005-02-11 15:41   ` Victor Julien
2005-02-11 15:49     ` Jason Opperisano
2005-02-11 16:02       ` Cedric Blancher
2005-02-11 15:58         ` Jason Opperisano
2005-02-11 16:08         ` Victor Julien
2005-02-11 16:21           ` Cedric Blancher
2005-02-11 15:27 ` Cedric Blancher
2005-02-11 15:44   ` Mikhail Zotov
2005-02-11 15:58     ` Cedric Blancher

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.