Mailinglist Archive: opensuse-security (192 mails)

< Previous Next >
Re: [suse-security] IPChains
  • From: Gerhard Sittig <Gerhard.Sittig@xxxxxxx>
  • Date: Fri, 26 May 2000 15:45:45 +0200
  • Message-id: <20000526154545.V2305@xxxxxxxxxxxxx>
On Fri, May 26, 2000 at 13:02 +0200, Markus Werner wrote:
> On Fri, 26 May 2000, Bauer, Juergen wrote:
> >
> > i just wanted to say that you should keep in mind that there
> > are different implementations for ping/traceroute.
> > windows clients are using icmp packets while linux is using
> > udp packets on port 33434+ (afair).
> just by traceroute. ping uses under Linux also icmp.

AFAIK ping always uses ICMP. traceroute uses UDP (Ports cited
above) by default but can be told to use ICMP, too. See "man 8
traceroute", Options "-p" and "-I", for more info.

And to make it security relevant, again (that's what we're here
for after all): ping can act as a tunnel transporting data from
and to the outside *if* you have a relay station inside your LAN.
That's why admins sometimes decide to block pings and traceroutes
and no user should feel any real loss about it.


virtually yours 82D1 9B9C 01DC 4FB4 D7B4 61BE 3F49 4F77 72DE DA76
Gerhard Sittig true | mail -s "get gpg key" Gerhard.Sittig@xxxxxxx
--
If you don't understand or are scared by any of the above
ask your parents or an adult to help you.

< Previous Next >
Follow Ups