Ascend Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: (ASCEND) Directed broadcasts on Ascend
At 04:16 PM 3/9/98 -0500, Phillip Vandry wrote:
>
>And my 2c is that the Smurf problem is different then the usual things
>we have to deal with.
>
>It is unique in that your network is attacked not because YOUR network is
>unprotected, but because 5 thousand other networks are unprotected. You
>cannot compel people to fix the problem because they don't work for you.
>Worse, you couldn't do it anyway, there are too many of them.
>
>The fact is that there are a lot of people out there that simply aren't
>aware that they should be turning off this functionality.
>
>I understand your point too, but I think holding back on turning on new
>features, thereby making the default configuration an obselete one, is
>too big a price for backward compatibility.
But there is also adherence to RFCs as I was also reminded:
>2) to conform RFC1812:
>
>5.3.5.2 Directed Broadcasts
>
> " A router MAY have an option to disable receiving network-prefix-
> directed broadcasts on an interface and MUST have an option to
> disable forwarding network-prefix-directed broadcasts. These options
> MUST default to permit receiving and forwarding network-prefix-
> directed broadcasts."
Kevin
++ Ascend Users Mailing List ++
To unsubscribe: send unsubscribe to ascend-users-request@bungi.com
To get FAQ'd: <http://www.nealis.net/ascend/faq>
Follow-Ups:
References: