Professional Documents
Culture Documents
ch05
ch05
Detection
Chapter Five
Packet Filtering
Overview
• Describe packets and packet filtering
• Explain the approaches to packet filtering
• Configure specific filtering rules based on business
needs
Rule 2(Echo Request): Gives your computers the ability to ping external
computers.
Rule 6(Time to Live Exceeded): Lets your hosts know that an exterior
resource is too many hops away.
Guide to Firewalls and VPNs, 3rd Edition 42
Rules for ICMP Packets
Rule 7(Echo Request): Blocks ping packets that might be used to locate
internal hosts.
Rule 11(ICMP Block): After setting your rules, drops all other ICMP
packets for extra security.