Ascend Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: (ASCEND) Smurf attack




well, you could start with blocking these broadcasts at the router level.
if you have a cisco you could use the 'no ip directed-broadcast' on your
interfaces.  if you have something other than cisco then hopefully
it has a similar command.  you should also have filters in place to make
sure that packets leaving your network do not have forged source addresses
(addresses that fall outside of your network).  this information is all on
cisco's website.

- keith



On Tue, 8 Sep 1998, Gabriella Paolini wrote:

> I have traced a smurf attack to my Max.
> 
> Someone sends an echo request to my broadcast.
> 
> I have a max4000 with 6.1.7 installed.
> I have set  Reply DirectedBcast Ping=No
>        and  Forward Directed Bcast=No
>        and  ICMP redirects = ignore
> 
> but I have continually packet of 1k of echo-request
> 
> How I can stop thats ?
> 
> Thanks
> 
>  
> 
>       Gabriella Paolini  
>       Network Admin.
> ----------------------------------------------------
>               Tizeta Informatica s.r.l.
>   Via Leandro Alberti, 65 40137 BOLOGNA BO ITALY
> 
> 
> Email: gab@tizeta.it       WEB http://www.tizeta.it
> Phone: +39 51 346.346      Fax: +39 51 345.070
> Helpdesk: +39 51 300.570
> -----------------------------------------------------
> ++ Ascend Users Mailing List ++
> To unsubscribe:	send unsubscribe to ascend-users-request@bungi.com
> To get FAQ'd:	<http://www.nealis.net/ascend/faq>
> 

++ Ascend Users Mailing List ++
To unsubscribe:	send unsubscribe to ascend-users-request@bungi.com
To get FAQ'd:	<http://www.nealis.net/ascend/faq>


References: