On Wed, Jun 14, 2000 at 09:08:19AM -0700, Wayne wrote:
> In reality, many security audit advisors warn companies to
> block ICMP message totally, either at their router or firewall.
> So ICMP messages from clients will never get to servers anyway.
In reality, this is also considered bad practice and isn't compliant
with several standards. ICMP route detection is extremely important
to some networks. Turning off specific ICMP message types is more
courteous. :)
-drew
--
-------
Drew Streib <d@xxxxxxxxxxx> 408.542.5725
Technical Marketing Manager, VA Linux Systems | <dtype@xxxxxxxxxxx>
Sr Developer, Community Liason, SourceForge | <dtype@xxxxxxxxxxxxxxx>
System Administrator, Linux International | <dtype@xxxxxx>
|