
Figure 81 Smurf Attack
8.4.2.1 ICMP Vulnerability
ICMP is an
Table 57 ICMP Commands That Trigger Alerts
5REDIRECT
13TIMESTAMP_REQUEST
14TIMESTAMP_REPLY
17ADDRESS_MASK_REQUEST
18ADDRESS_MASK_REPLY
8.4.2.2 Illegal Commands (NetBIOS and SMTP)
The only legal NetBIOS commands are the following - all others are illegal.
Table 58 Legal NetBIOS Commands
MESSAGE:
REQUEST:
POSITIVE:
VE:
RETARGET:
KEEPALIVE:
All SMTP commands are illegal except for those displayed in the following tables.
Table 59 Legal SMTP Commands
AUTH | DATA | EHLO | ETRN | EXPN | HELO | HELP | NOOP | |
|
|
|
|
|
|
|
|
|
QUIT | RCPT | RSET | SAML | SEND | SOML | TURN | VRFY |
|
|
|
|
|
|
|
|
|
|
150 | Chapter 8 Firewalls |