[c-nsp] Is Nachi Worm Mitigation Measure Still Necessary in Campus?

2009-05-27 Thread schilling
Hi All, We have PBR which drops 92 bytes icmp echo/echo-reply applied on our enterprise backbone(Catalyst 6500/Sup7203BXL) links and all customer access VLANs. There are several issues, icmp echo/echo-reply are punted to cpu, it breaks windows tracert/ping, and it's harder to implement the

Re: [c-nsp] Is Nachi Worm Mitigation Measure Still Necessary in Campus?

2009-05-27 Thread Jared Mauch
I would remove it. There is an endless list of things you can attempt to mitigate. I'm sure some devices are still infected/scanning for CodeRed. - Jared On May 27, 2009, at 10:31 AM, schilling wrote: Hi All, We have PBR which drops 92 bytes icmp echo/echo-reply applied on our