Re: RELATED ICMP packets of type 3

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Le vendredi 11 février 2005 à 17:08 +0100, Victor Julien a écrit :
> So Cedric, you are basicly saying that if i accept RELATED icmp packets i 
> _should_ be a good internet-citizen?

I wouldn't say that this way. Imho good internet-citizen should accept
RELATED ICMP packets.
I say droping legitimate ICMP errors is harmful. Netfilter provides a
way to spot theses packets an accept them, so you can behave as a good
Internet citizen not breaking other people stuff (breaking yours is your
deal) ;)


-- 
http://sid.rstack.org/
PGP KeyID: 157E98EE FingerPrint: FA62226DA9E72FA8AECAA240008B480E157E98EE
>> Hi! I'm your friendly neighbourhood signature virus.
>> Copy me to your signature file and help me spread!



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux