North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: ICMP Blocking Woes

  • From: Kevin Oberman
  • Date: Mon Sep 29 16:43:27 2003

> From: "Eric Germann" <[email protected]>
> Date: Mon, 29 Sep 2003 15:56:04 -0400
> Sender: [email protected]
> 
> 
> winders does use udp instead of icmp in their tracert program, IIRC (or at
> least they used to).  At the risk of getting my head blown off, could we say
> that was foresight :)

You have it backwards. Windows tracert uses ICMP while most Unix boxes
use the LBNL traceroute program (or something derived from it) which
uses UDP. But both rely on the return of ICMP TTL expired or
unreachable messages and blocking all ICMP breaks both.
-- 
R. Kevin Oberman, Network Engineer
Energy Sciences Network (ESnet)
Ernest O. Lawrence Berkeley National Laboratory (Berkeley Lab)
E-mail: [email protected]			Phone: +1 510 486-8634