Merit Network
Can't find what you're looking for? Search the Mail Archives.
  About Merit   Services   Network   Resources & Support   Network Research   News   Events   Home

Discussion Communities: Merit Network Email List Archives

North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: ICMP Attacks???????

  • From: Perry E. Metzger
  • Date: Fri Aug 15 15:29:53 1997

Josh Beck writes:
> 	I think it's critical that routers be capable of logging the
> hardware addresses of ICMP, along with source addresses, so that these
> attacks can be traced across shared media at exchanges.

ICMP is only one of a dozen ways to attack people. There is no point
in specially targetting ICMP.

Unfortunately, it is, in practice, impossible to log ALL the traffic
across a very busy router at an exchange point.

In my opinion, the only long term solution here is software that is
"smart" about tracebacks -- that is, can be directed in real time to
log certain classes of traffic.

Perry




Discussion Communities


About Merit | Services | Network | Resources & Support | Network Research
News | Events | Contact | Site Map | Merit Network Home


Merit Network, Inc.