[c-nsp] security

Gert Doering gert at greenie.muc.de
Tue Dec 2 09:28:27 EST 2008


Hi,

On Tue, Dec 02, 2008 at 09:02:56AM -0500, Adam Greene wrote:
> How does one get around the side-effect of not allowing broadcasts; i.e. 
> wouldn't this break ARP functionality?

This has no effect on things that happen *inside* the network - it will
just stop converting "IP broadcast -> link level broadcast" for packets
coming from the outside.

ARP is not crossing the router - so: no problem there.

gert

-- 
USENET is *not* the non-clickable part of WWW!
                                                           //www.muc.de/~gert/
Gert Doering - Munich, Germany                             gert at greenie.muc.de
fax: +49-89-35655025                        gert at net.informatik.tu-muenchen.de
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 304 bytes
Desc: not available
URL: <https://puck.nether.net/pipermail/cisco-nsp/attachments/20081202/f60dcfd2/attachment.bin>


More information about the cisco-nsp mailing list