logo       

echo 0 > send_redirects broken?: msg#00111

Subject: echo 0 > send_redirects broken?
192.168.0.0/24 

  .9    .10      .254
==|======|=======|====
 [A]    [B]   [Router]

Hosts A and B running RHL9 with kernel 2.4.20-8.

1. Start pinging the .254 IP from host A

2. Enable ip_forwarding on host B
3. Run arpspoof on host B to poison the arp cache on host A and the
router
4. On host B Turn off icmp redirects with the command:

echo 0 > /proc/sys/net/ipv4/conf/eth0/send_redirects

Problem: Host B *still* sends ICMP redirects. Initially many redirects
are sent, then the rate at which ICMP redirects are sent slows down
until redirects only trickle out every few minutes.

In older 2.4 kernels (2.4.9 for example) this did not happen. Turning
off ICMP redirects really turned them off.

Comments?

Attachment: signature.asc
Description: This is a digitally signed message part

<Prev in Thread] Current Thread [Next in Thread>