[53072] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: ICANN Targets DDoS Attacks

daemon@ATHENA.MIT.EDU (Peter E. Fry)
Tue Oct 29 23:47:03 2002

Date: Tue, 29 Oct 2002 22:49:15 -0600
From: "Peter E. Fry" <pfry@swbell.net>
In-reply-to: <20021030025101.GA16301@cornfield.rbfnet.com>
To: nanog@merit.edu
Reply-To: pfry@swbell.net
Errors-To: owner-nanog-outgoing@merit.edu


On 29 Oct 2002 at 20:51, Brett Frankenberger wrote:

  Brett!  Long time, no hear, now that the Nortel/Bay newsgroup has 
pretty much wound down.  Like Usenet in general.

> Addressing just the issue of how traceroute works, I'll point out that
> (a) Most or all flavors of traceroute distributed by Microsoft use ICMP
> ECHO instead of UDP for the outbound packets [...]

   ...And I rather like that method.  It's sad, but I'll not allow 
random high-port UDP to my stations.

> FWIW, I don't think rate limiting ICMP is likely to have a negative
> impact.  I also don't think it's a good idea, though -- it might help
> to identify or prevent some problems in the short term, but in the long
> run, it's a race we can't win [...]

  Hmmm.  Agreed.

Peter E. Fry


home help back first fref pref prev next nref lref last post