Best way to filter "Nachi pings"?

Brett Glass brett at lariat.org
Mon Oct 27 05:17:43 PST 2003


At 02:34 AM 10/27/2003, Kris Kennaway wrote:

>As it happens, ipfw[2] does this anyway.

It does. But the router is a production machine and is
running an older release of FreeBSD that doesn't have
a solid IPFW2. (IPFW2 *just* hit full production quality 
somewhere between 4.8-RELEASE and now, I must wait until 
4.9-RELEASE is out, and proves stable, before I can start 
using IPFW2. This, as you know, may take awhile.)

--Brett



More information about the freebsd-security mailing list