[2756] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Router programming,source routes and spoofed ICMP attacks.

daemon@ATHENA.MIT.EDU (Bill Hogan)
Thu Jun 20 22:12:23 1996

Date: 	Thu, 20 Jun 1996 18:26:21 -0700
Reply-To: hogan@crl.com
From: Bill Hogan <hogan@crl.com>
To: Multiple recipients of list BUGTRAQ <BUGTRAQ@NETSPACE.ORG>

On 20 Jun 96 at 17:19, Alan Brown wrote:

> A few pointers for routers will help reduce some of the damage.
>
> 1: Unless you have a reason not to, set all routers to dump source
>    routed frames. This is the default on some brands, but it isn't
>    on Ciscos (IMHO this is wrong but I'm not Cisco).
>    For Ciscos, once in configuration mode, set "no ip source-route",
>    then exit and write.

FYI,
The Livingston IRX routers don't allow source routed frames Period.

-------------
Hogan's Law:
     You can have it done fast.
     You can have it done right.
     You can have it done cheap.
PICK ANY 2
                                .--.
__________________________  .-. |  |  ________________________________
  Bill Hogan                | |_|  | .-.  Phone: (602) 985-6842
  Career Blazers            |___   |_| |    Fax: (602) 985-3546
  1346 N. Papillon Circle       |   ___|  Pager: (800) 214-5057
  Mesa, Arizona  85205          |  |      Email: hogan@crl.com
------------------------------  |  |  --------------------------------

home help back first fref pref prev next nref lref last post