LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Re: PMTU-D: remember, your load balancer is broken (fwd)

To: Wayne <wayne@xxxxxxxxxxxxxxx>, lvs-users@xxxxxxxxxxxxxxxxxxxxxx
Subject: Re: PMTU-D: remember, your load balancer is broken (fwd)
From: Drew Streib <ds@xxxxxxxxxxx>
Date: Wed, 14 Jun 2000 09:25:04 -0700
On Wed, Jun 14, 2000 at 09:08:19AM -0700, Wayne wrote:
> In reality,  many security audit advisors warn companies to
> block ICMP message totally, either at their router or firewall.
> So ICMP messages from clients will never get to servers anyway.

In reality, this is also considered bad practice and isn't compliant
with several standards. ICMP route detection is extremely important
to some networks. Turning off specific ICMP message types is more
courteous. :)

-drew

-- 
-------
Drew Streib <d@xxxxxxxxxxx> 408.542.5725

Technical Marketing Manager, VA Linux Systems | <dtype@xxxxxxxxxxx>
Sr Developer, Community Liason, SourceForge   | <dtype@xxxxxxxxxxxxxxx>
System Administrator, Linux International     | <dtype@xxxxxx>


<Prev in Thread] Current Thread [Next in Thread>