Project

General

Profile

Actions

Feature #1447

closed
AG AG

Ability to reject ICMP traffic

Feature #1447: Ability to reject ICMP traffic

Added by Alexander Gozman almost 11 years ago. Updated almost 11 years ago.

Status:
Closed
Priority:
Normal
Target version:
Effort:
Difficulty:
Label:

Description

Currently suricata can reject only TCP and UDP traffic: for TCP it sends RST, for UDP - ICMP error. However, snort handles "reject" like "send RST for TCP and port-unr for anything else". I think suricata should do the same, it can be useful for debugging purposes.

AG Updated by Alexander Gozman almost 11 years ago Actions #2

  • Due date set to 04/15/2015
  • Status changed from New to Resolved
  • % Done changed from 0 to 100
  • Estimated time set to 1.00 h

VJ Updated by Victor Julien almost 11 years ago Actions #3

  • Status changed from Resolved to Closed
Actions

Also available in: PDF Atom