Hi all With RTBH, if I need check for the number of packets that is from the attacker. I configure the following:
access-list 123 permit icmp any any unreachables log access-list 123 permit ip any any logging on logging host or buffered The null 0 interface is not configured for "no ip unreachables". The access-list is associated to interfaces of the edge router running BGP that gets the incoming traffic from the attacker. But I don't see the unreachables matching the ACL. The counter is "0". Any idea? With regards Kings
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com
