|
|||||||||||
|
Re: linux-ipsec: unencrypted pings from OpenBSD 2.2_9
From: Angelos D. Keromytis <angelos(at)dsl.cis.upenn.edu>
Date: Wed Mar 25 1998 - 17:34:16 EST
In message <199803251846.NAA04964@conscoop.ottawa.on.ca>, Richard Guy Briggs wr
ites:
You also need this line: rt 0.0.0.0 255.255.255.255 192.168.2.110 255.255.255.255 -1 -1 -1 192.168.2.110 525 1
The reason is that ICMP passes to IP a packet with a zero-source IP
address (since, unlike TCP -- and I guess UDP -- it doesn't do a
route lookup in advance).
-----BEGIN PGP SIGNATURE----- Version: 2.6.3i Charset: noconv Comment: Processed by Mailcrypt 3.4, an Emacs/PGP interface
iQCVAwUBNRmGZ70pBjh2h1kFAQEUMQQAnnuxtdMu710zk0oOH9xSyA8qLUu6DqpV
ulP3XKkwyjP0wAsMsMbj5pRCZw+H+7JE3o5NS01iGL+OdjzUIkCzt4U0iSs2kcaS
XLHVQU38pWW/fbKDlaU6/Jpze0DHXncyJ3k51iMgYBTG5g1Nsd8tSzayxfj6dWmU
xXjUhtEw+AQ=
This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 12:59:28 EDT |
||||||||||
|
|||||||||||