netdev
[Top] [All Lists]

echo 0 > send_redirects broken?

To: netdev@xxxxxxxxxxx
Subject: echo 0 > send_redirects broken?
From: Dax Kelson <Dax@xxxxxxxxxxxx>
Date: Thu, 04 Sep 2003 15:04:02 -0600
Sender: netdev-bounce@xxxxxxxxxxx
192.168.0.0/24 

  .9    .10      .254
==|======|=======|====
 [A]    [B]   [Router]

Hosts A and B running RHL9 with kernel 2.4.20-8.

1. Start pinging the .254 IP from host A

2. Enable ip_forwarding on host B
3. Run arpspoof on host B to poison the arp cache on host A and the
router
4. On host B Turn off icmp redirects with the command:

echo 0 > /proc/sys/net/ipv4/conf/eth0/send_redirects

Problem: Host B *still* sends ICMP redirects. Initially many redirects
are sent, then the rate at which ICMP redirects are sent slows down
until redirects only trickle out every few minutes.

In older 2.4 kernels (2.4.9 for example) this did not happen. Turning
off ICMP redirects really turned them off.

Comments?

Attachment: signature.asc
Description: This is a digitally signed message part

<Prev in Thread] Current Thread [Next in Thread>
  • echo 0 > send_redirects broken?, Dax Kelson <=