Hi all

With RTBH, if I need check for the number of packets that is from the
attacker. I configure the following:

access-list 123 permit icmp any any unreachables log
access-list 123 permit ip any any

logging on
logging host or buffered


The null 0 interface is not configured for "no ip unreachables".


The access-list is associated to interfaces of the edge router running
BGP that gets the incoming traffic from the attacker.

But I don't see the unreachables matching the ACL. The counter is "0".

Any  idea?


With regards
Kings
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Reply via email to