Then just turn off accept ICMP in your policy, that should work.
-----Original Message-----
From: Tim Gollschewsky [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, October 03, 2000 8:11 AM
To: Firwall-1 List
Subject: Re: [FW1] How do I stop being smurfed?
I agree, but next hop outside my FW is controlled by exodus who
refuse to do anything.
On Tue, Oct 03, 2000 at 03:05:44PM +0200, Jonas Thambert spoke thusly:
> A filtering router would probably do it...
>
> /Jonas
>
>
>
> -----Original Message-----
> From: Tim Gollschewsky [mailto:[EMAIL PROTECTED]]
> Sent: den 3 oktober 2000 14:39
> To: Firwall-1 List
> Subject: [FW1] How do I stop being smurfed?
>
>
>
> Hi,
>
> One of the sites I manage is currently under a heavy smurf attack, the
> only way I can think of to stop it is to go upstream to my provider
> and ask them to block echo-replys (or just ICMP) to the target machine,
> but my provider (exodus) refuses to help. :(
>
> Is there ANYTHING else I can do?
>
> Thanks,
>
> Tim.
>
>
>
============================================================================
> ====
> To unsubscribe from this mailing list, please see the instructions at
> http://www.checkpoint.com/services/mailing.html
>
============================================================================
> ====
============================================================================
====
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
============================================================================
====
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================