[50609] in North American Network Operators' Group
Re[4]: If you have nothing to hide
daemon@ATHENA.MIT.EDU (Richard Welty)
Mon Aug 5 19:27:04 2002
Date: Mon, 5 Aug 2002 19:23:19 -0400 (EDT)
From: Richard Welty <rwelty@averillpark.net>
To: nanog@merit.edu
In-Reply-To: <Pine.LNX.4.21.0208051709030.6356-100000@Overkill.EnterZone.Net>
Errors-To: owner-nanog-outgoing@merit.edu
On Mon, 5 Aug 2002 17:10:50 -0400 (EDT) John Fraizer <nanog@Overkill.EnterZone.Net> wrote:
> On Mon, 5 Aug 2002, Richard Welty wrote:
> haven't you ever heard of smurf?
> I wasn't aware the SMURF used source-routing. It generally simply
> spoofed
> the source address of the packet. If more ISPs properly filtered on the
> customer edge back then, SMURF wouldn't have been as deadly as it
> was/(is).
my mistake. when smurf was first explained to me lo those many years ago,
the person who explained it (and it's been so long i don't even remember
who that was) claimed it used source routing. i never really questioned
that, but everyone who has corrected me is right -- it doesn't need source
routing to work.
oops,
richard
--
Richard Welty rwelty@averillpark.net
Averill Park Networking 518-573-7592
Unix, Linux, IP Network Engineering, Security