Re: [nsp] UDP broadcast filters.

From: Jared Mauch (jared@puck.nether.net)
Date: Mon Mar 16 1998 - 13:52:51 EST


On a dark and stormy night, Craig A. Huegen said:
> Prevention pieces:
>
> * "no ip directed-broadcast" still prevents your network from being an
> intermediary
>
> * Disable the internal troubleshooting services in machines, where
> possible. For UNIX boxes, comment the "echo" and "chargen" services in
> inetd.conf and restart inetd:
>
> #echo stream tcp nowait root internal
> #echo dgram udp wait root internal
> #chargen stream tcp nowait root internal
> #chargen dgram udp wait root internal

        Another thing to do is no service udp-small-servers

        You will have to reload for that command to do it's magic.

        - jared



This archive was generated by hypermail 2b29 : Sun Aug 04 2002 - 04:13:15 EDT