The only information I can find about that is http://www.dslreports.com/comment/1576/37808 , which shows that it was related to Sobig. I know that Charter Communications was also blocking ICMP packets (and even DNS packets for a shorter period of time) shortly before Sobig.F's "Second Attack" was going to occur last Friday. These seem to have been purely temporary precautionary measures.
I had a DNS question today from a client in Europe who blocked ICMP to shutdown worm attacks, and then claimed his DNS wasn't working.
But DNS protocol doesn't use ICMP at all. Some apps use ICMP to probe for services, and he probably figured these apps failing was due to ICMP bugging DNS operation.
Len
_____________________________________________________________________ http://MenAndMice.com/DNS-training: London; San Jose; Wash DC IMGate.MEIway.com: anti-spam gateway, effective on 1000's of sites, free
To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/ Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/
