Kacheong Poon writes:
> Note that I am *not* saying that increasing the ICMP return
> byte size is not good.  But I don't think the suggestion on
> using rate is good enough.  The bandwidth consumed is the
> number ICMP messages sent per second (rate) times the ICMP
> packet size.  To some sys admins, just controlling the rate is
> not good enough for them to handle DoS situation.

The max size is already set by the RFCs.  You don't make your reply
larger than 576 octets.

-- 
James Carlson, Solaris Networking              <james.d.carlson at sun.com>
Sun Microsystems / 35 Network Drive        71.232W   Vox +1 781 442 2084
MS UBUR02-212 / Burlington MA 01803-2757   42.496N   Fax +1 781 442 1677

Reply via email to