[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
IP Options
- Subject: IP Options
- From: morrowc.lists at gmail.com (Christopher Morrow)
- Date: Thu, 17 Nov 2011 10:07:48 -0500
- In-reply-to: <CAB_zYd+-mmCzw6M7Om3ecL=6RvK2S_BLXs13wyZ2AnF=mWgQhw@mail.gmail.com>
- References: <CAB_zYd+-mmCzw6M7Om3ecL=6RvK2S_BLXs13wyZ2AnF=mWgQhw@mail.gmail.com>
got pcaps?
On Thu, Nov 17, 2011 at 10:04 AM, harbor235 <harbor235 at gmail.com> wrote:
> Is it just me or has there been an increase in packets with IP options set
> hitting
> our front door? There are ways to mitigate e.g. IP options selective
> discard, and ACL
> IP options support. ACL entries on the edge appear to be the best
> way identify and log the source.
> IP options selective discard drops packets silently so from my view they
> are not as effective.
>
> Is anyone doing anything else to identify and mitigate? ?I have been seeing
> hits on our firewalls
> but would rather take care of it at our edge with little or no impact.
>
>
> Mike
>
- Follow-Ups:
- IP Options
- From: harbor235 at gmail.com (harbor235)
- References:
- IP Options
- From: harbor235 at gmail.com (harbor235)