OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Paul Heinlein (heinleinmeasurecast.com)
Date: Wed Oct 03 2001 - 17:28:47 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Wed, 3 Oct 2001, Kevin Kaminski wrote:

    > What is a safe ICMP configuration in the real world that will not
    > affect client connectivity? Or maybe I should leave it more open as to
    > what is your policy on ICMP with Win2K and why?

    I don't use Windows for ICMP filtering (and hence don't know the type
    numbering used by Microsoft), but I typically allow only

      ECHOREPLY
      ECHO
      TIME_EXCEEDED

    on inbound connections unrelated to any established outbound
    connections. I haven't experienced any troubles with that configuration.

    -- Paul Heinlein <heinleinmeasurecast.com>