From: Earl Aboytes (earl@xxxxxxxxxxxx)
Date: Wed Feb 09 2000 - 13:33:50 GMT-3
I think tracroute uses different ports on different protocols. Doesn't it use
TCP and UDP?
Earl
At 07:29 AM 2/9/00 -0800, you wrote:
>Hi,
>
>I would suggest figuring out exactly what source and destination ports are
>used. If they are different, you might be able to filter on them, like FTP
>and DNS.
>
>Lemme think about this some more...
>
>-Derek
>
>-----Original Message-----
>From: Earl Aboytes [SMTP:earl@linkline.com]
>Sent: Monday, February 07, 2000 8:25 PM
>To: ccielab@groupstudy.com
>Subject: traceroute filter
>
>All,
>I am trying to create a list that filters traceroute in one direction. In
>other words, I want to be able to traceroute out of my network but I don''t
>want anyone in the internet to be able to trace past my firewall (a Cisco
>7507). What sort of access-list should I put at the firewall.
>
>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
>Earl Aboytes
>Senior Technical Consultant
>GTE-Managed Solutions
>800-483-5325 x8817
>earl.aboytes@telops.gte.com
>~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
>
This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 08:22:53 GMT-3