Filtering is done for ICMP, 92 Bytes which W32/Nachi.worm is using http://vil.nai.com/vil/content/v_100559.htm
> 2) unacceptable, cause they no more deliver "full" internet access. Yes, they should rather inform the customer how to prevent this. > 3) acceptable if they would have told their customers in advance. In case if it is an emergency they should inform the customer and set a temp rule which could be remove by ISP request. > They told us, they did that to filter some worms. I can understand > this, but we're an ISP and IMHO the filtering should be done at the > edge of internet not in the core... That is the exactly case, it have to be optional ! -- * Erich Hohermuth IP Engineer - SolNet (AS 9044) PGPKEY-46A08FCB * ---------------------------------------------- [EMAIL PROTECTED] Maillist-Archive: http://www.mail-archive.com/swinog%40swinog.ch/
