RE: icmp pinholes
From: Dan Langille <dan_at_langille.org>
Date: Tue, 5 Dec 2000 14:45:37 +1300 Message-Id: <200012050145.OAA98025@ducky.nz.freebsd.org>
On 5 Dec 2000, at 13:58, rob.edkins@axon.co.nz wrote:
> Ports shouldn't apply to ICMP.
Here's what I'm trying now:
start 0, end 0, number of ports 1, protocol 1
yet I do this: # tcpdump -i ed0 icmp
and the only pings which turn up are those I initiate:
ping -c 1 www.actrix.gen.nz
gives:
# tcpdump -i ed0 icmp
Hmmm. So pings out are OK. Pings in don't get to the firewall. They
I guess my first question should be: who has pings hitting their firewall
-- Dan Langille The FreeBSD Diary - http://www.freebsddiary.org/ NZ ADSL - http://www.unixathome.org/adsl/ NZ Broadband - http://www.unixathome.org/broadband/ This message is part of the NZ ADSL mailing list. see http://unixathome.org/adsl/ for archives, FAQ, and various documents. To unsubscribe: send mail to majordomo@unixathome.org with "unsubscribe adsl" in the body of the messageReceived on Tue Dec 5 14:46:44 2000 |
This archive was generated by hypermail 2.2.0 : Thu Nov 30 11:48:07 2006 EST