Linux Netfilter discussions
 help / color / mirror / Atom feed
* ICMP: What should be blocked?
@ 2003-03-05  7:09 Jean-Christian Imbeault
  2003-03-05 10:20 ` Maciej Soltysiak
  2003-03-06 21:12 ` Manuel Samper
  0 siblings, 2 replies; 3+ messages in thread
From: Jean-Christian Imbeault @ 2003-03-05  7:09 UTC (permalink / raw)
  To: netfilter

I been googling the web trying to find what rules I should set up for 
ICMP but I've seen some people say one thing while other say something 
completely different.

One question I have not been able to find an answer to though, should I 
block ICMP messages of type 11 (TTL exceeded)?

Also if anyone knows of a good resource that explains what ICMP messages 
I should block (why and how :) could they let me know? I understand that 
it of course depends on my level of paranoia and how friendly I want to 
be to the rest of the net, but I get the feeling from my readings that 
the are some ICMP messages that just should not be let through a 
firewall ....

Thanks,

Jc



^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2003-03-06 21:12 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-03-05  7:09 ICMP: What should be blocked? Jean-Christian Imbeault
2003-03-05 10:20 ` Maciej Soltysiak
2003-03-06 21:12 ` Manuel Samper

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox