Ascend Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: (ASCEND) Directed broadcasts on Ascend



At 04:16 PM 3/9/98 -0500, Phillip Vandry wrote:
>
>And my 2c is that the Smurf problem is different then the usual things
>we have to deal with.
>
>It is unique in that your network is attacked not because YOUR network is
>unprotected, but because 5 thousand other networks are unprotected. You
>cannot compel people to fix the problem because they don't work for you.
>Worse, you couldn't do it anyway, there are too many of them.
>
>The fact is that there are a lot of people out there that simply aren't
>aware that they should be turning off this functionality.
>
>I understand your point too, but I think holding back on turning on new
>features, thereby making the default configuration an obselete one, is
>too big a price for backward compatibility.

But there is also adherence to RFCs as I was also reminded:

>2) to conform RFC1812:
>
>5.3.5.2 Directed Broadcasts
>
>   "   A router MAY have an option to disable receiving network-prefix-
>   directed broadcasts on an interface and MUST have an option to
>   disable forwarding network-prefix-directed broadcasts.  These options
>   MUST default to permit receiving and forwarding network-prefix-
>   directed broadcasts."



Kevin


++ Ascend Users Mailing List ++
To unsubscribe:	send unsubscribe to ascend-users-request@bungi.com
To get FAQ'd:	<http://www.nealis.net/ascend/faq>


Follow-Ups: References: