Gentoo Archives: gentoo-user

From: Stroller <stroller@××××××××××××××××××.uk>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Machine doesn't respond to broadcast ping.
Date: Thu, 25 Jun 2009 12:15:50
Message-Id: 5404EBD4-8B15-4706-B349-AE5EAA4C753D@stellar.eclipse.co.uk
In Reply to: RE: [gentoo-user] Machine doesn't respond to broadcast ping. by Adam Carter
1 On 25 Jun 2009, at 08:10, Adam Carter wrote:
2
3 >>> I've got one machine here on the LAN which isn't responding to
4 >>> broadcast
5 >>> ping. Any idea why not?
6 >>
7 >> You need to set icmp_echo_ignore_broadcasts to 0. Default is
8 >> 1, mainly for dos prevention:
9 >>
10 >> # sysctl net.ipv4.icmp_echo_ignore_broadcasts=0
11 >
12 > I thought it would default to off in most OSes these days, because of;
13 > http://en.wikipedia.org/wiki/Smurf_attack
14 >
15 > Are those other machines patched up?
16
17 They're all on the LAN, anyway, but:
18
19 192.168.1.71 - the machine from which the ping was sent (don't know if
20 that makes a difference). Mac OS X 10.5, fairly recent updates, but
21 perhaps not this month's.
22 192.168.1.43 - Gentoo 1.4 profile, 2.4 kernel, not updated in at least
23 3 years, well due for retirement, just as soon as I've moved services
24 to 192.168.1.100
25 192.168.1.22 - network KVM [1], probably can't get a firmware update,
26 unfortunately. :( Not a very recent one, anyway. Although they may
27 still sell it, I'm pretty sure it's rebadged OEM & development on the
28 product is ceased.
29 192.168.1.9 - LaserJet 4000, JetDirect card.
30
31 Interestingly the router is a model at least 5 years old - a Draytek
32 Vigor, older than the 192.168.1.43 build - and it isn't replying.
33
34 I now realise that 3 other Linux boxes are missing from the list. I'm
35 sure I'm not the only person on the list to occasionally lose count.
36
37 Anyway, for each device it's either a case of:
38 - yes, it's regularly updated;
39 - sorry, there's not much to be done about it; or
40 - yes, I know it needs updating!
41
42 It shouldn't matter, anyway, if they're all behind a NAT router,
43 should it? I'm inclined to disable this ignore, because I do find
44 broadcast ping very occasionally useful.
45
46 Stroller.
47
48
49
50 [1] http://www.austin-hughes.co.uk/products.cfm?Product=28

Replies

Subject Author
RE: [gentoo-user] Machine doesn't respond to broadcast ping. Adam Carter <Adam.Carter@×××××××××.au>