[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] RE: [FW1] Ping of Death
Could a solution for some people be ..... allow anybody ping a machine on your DMZ (a 386 running tcp). This way you only have one machine potentially subject to the POD. All a ping does is check that the path to a machine is available. It cannot tell if services/daemons are running. So what are the clients going to achieve by just pinging your web server or epayment server etc.. The extra hop from the dmz to your server is under your control and I am sure you have methods of monitoring that network and you will probably know before them of it's unavailability. cheers deanc -----Original Message----- From: Tom Sevy [mailto:[email protected]] Sent: Friday, 13 October 2000 5:29 AM To: 'Dan Hitchcock'; 'Scott Becker' Cc: FW-1 Mailing List (E-mail) Subject: RE: [FW1] Ping of Death Unfortunately we have clients that insist on being able to ping our hosts for status. -----Original Message----- From: Dan Hitchcock [mailto:[email protected]] Sent: Thursday, October 12, 2000 11:51 AM To: 'Scott Becker' Cc: FW-1 Mailing List (E-mail) Subject: RE: [FW1] Ping of Death Why on earth would you want to allow PING from ANY? If you must do this, ping of death is one of the associated risks. The best you can do is make sure the OS on all ping-able boxes has all the latest security patches applied. Dan Hitchcock CCNA, MCSE Network Engineer Xylo, Inc. (formerly employeesavings.com)The work/life solution for corporate thought leaders -----Original Message----- From: Scott Becker [mailto:[email protected]] Sent: Wednesday, October 11, 2000 8:56 PM To: [email protected] Subject: [FW1] Ping of Death Hi, we'd like to allow ping from ANY however we want to avoid Ping of Death. Is there any way i can do this ? Thanks. _________________________________________________________________________ Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com. Share information about yourself, create your own public profile at http://profiles.msn.com. ============================================================================ ==== To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ============================================================================ ==== ============================================================================ ==== To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ============================================================================ ==== ============================================================================ ==== To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ============================================================================ ==== *************************************************** This e-mail is not an official statement of the Waikato Regional Council unless otherwise stated. Visit our website http://www.ew.govt.nz *************************************************** ================================================================================ To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================================================
|