[11893] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: ICMP Attacks???????

daemon@ATHENA.MIT.EDU (Peter E. Giza)
Thu Aug 21 21:13:32 1997

Date: Thu, 21 Aug 1997 20:55:16 -0400
From: "Peter E. Giza" <giza@adsmart.net>
To: Jon Green <jcgreen@netins.net>
CC: "Erik E. Fair (Time Keeper)" <fair@clock.org>, nanog@merit.edu

Make them read the 'ingress/egress filtering' by Paul Fergusson et. al.
Apologies to
Paul if I spelled his name incorrectly.

Jon Green wrote:

> On Thu, 21 Aug 1997 13:18:34 -0700, fair@clock.org writes:
> >
> >There is another mitigation: everyone here should commit to filtering
>
> >customer packets at the customer premesis router (or at the dial in
> for
> >PPP/SLIP) such that it is not possible for a customer to send a
> packet into
> >the network that has an IP source address on it that is not assigned
> to
> >that customer. That is, no more lying about source addresses.
>
> Every time I show a customer of mine how to configure a router, I
> try to educate them on this.  We need some kind of massive marketing
> effort to get this out to people though.  People would do it, but
> nobody
> knows about it.
>
> Maybe we should get CyberPromo to spam all the technical contacts
> in Internic's database to tell them how to do filtering. :)
>
> -Jon
>
>      -----------------------------------------------------------------
>
>     *      Jon Green            *         "Life's a dance
> *
>    *   jcgreen@netINS.net       *          you learn as you go"
> *
>   *  Finger for Geek Code/PGP
> *                                       *
>  *  #include "std_disclaimer.h" *
> http://www.netins.net/showcase/jcgreen *
>  -
> -----------------------------------------------------------------------




home help back first fref pref prev next nref lref last post