Anyone know which ICMP types and codes are reasonably safe to allow
through my firewall? I want to keep as much info hidden as possible (so
disabling ping and tracert is a start) but also allow messages that help keep
connections going (such as type 3 code 4 to allow a smaller MTU to be used
for packet sizes). And I need to set these on a PIX which only appears to
allow me to specifiy the type, not the code, for the ICMP packets to
allow/deny - am I reading the command reference wrong, or is this the case.
Dan
---
D.C. Crichton email: [EMAIL PROTECTED]
Senior Systems Analyst tel: +44 (0)121 706 6000
Computer Manuals Ltd. fax: +44 (0)121 606 0477
Computer book info on the web:
http://computer-manuals.co.uk/
Want to earn money? Join our affiliate network!
http://computer-manuals.co.uk/affiliate/
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]