[NCLUG] Preventing ICMP DDoS

jeff jeff at themoes.org
Fri Aug 8 14:10:24 MDT 2003


J. Paul Reed wrote:
> On 08 Aug 2003 at 07:47:01, quent arranged the bits on my disk to say:
> > FRII's solution to the DoS attacks is, apparently, to block ICMP at the
> > edge of their DSL network. I've been unable to ping out from my subnet or
> > ping into it from outside of FRII's network for several months.
>
> Is FRII one of those clueful providers that blocks *all* ICMP (thus
> breaking TCP) or just ping and pong?
>
> Somehow, I'm willing to bet it's the former. It's what every "good ISP"
> does.

FWIW the problem ISP isn't FRII, it's rackspace. Their slogan is "Fanatical 
Customer Support". That is until you need the support...then they have 
"policies".

-Jeff



More information about the NCLUG mailing list