hilton de meillon wrote:
Secondly would 'iptables -A INPUT -p IGMP -j REJECT' protect my machine from
remote attacks ?.
This is not the suggested solution.
The suggested workaround is to recompile your kernel with 'MULTICASTING' set to OFF.
Then check if you have:
/proc/net/igmp /proc/net/mcfilter
if both exist and are non-empty you are vulnerable!
-- SLUG - Sydney Linux User's Group Mailing List - http://slug.org.au/ Subscription info and FAQs: http://slug.org.au/faq/mailinglists.html
