Re: Traceroute Anomaly

From: Barney Wolff (barney_at_databus.com)
Date: 08/20/04

  • Next message: Eli Dart: "Re: Traceroute Anomaly"
    Date: Fri, 20 Aug 2004 13:23:14 -0400
    To: Gregory Kuhn <freebsd-net@lists.ctch.net>
    
    

    On Fri, Aug 20, 2004 at 11:01:31AM -0600, Gregory Kuhn wrote:
    >
    > My question is this;
    > Why can I do a traceroute using the DOS version of traceroute (tracert) to
    > any of my FreeBSD boxes, but I am not able to do so from another FreeBSD
    > box? Furthermore, it is not just from my own boxes that I am unable to do
    > a traceroute. Using the traceroutes listed at www.traceroute.org I again
    > am unable to trace back to my FBSD boxes.

    If I remember correctly, MS's tracert sends ICMP packets, while traditionally
    Unix traceroutes send UDP. You're blocking the UDP somewhere, presumably.
    tcpdump and/or adding logging to your firewall rules should tell you more.

    -- 
    Barney Wolff         http://www.databus.com/bwresume.pdf
    I'm available by contract or FT, in the NYC metro area or via the 'Net.
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"
    

  • Next message: Eli Dart: "Re: Traceroute Anomaly"

    Relevant Pages

    • Re: Is the interweb broken?
      ... This afternoon I tried a traceroute from my Ubuntu box to some Windows ... boxes and discovered that they all routed through my boss's computer. ...
      (uk.comp.sys.mac)
    • Re: Traceroute Anomaly
      ... > Why can I do a traceroute using the DOS version of traceroute ... > to any of my FreeBSD boxes, but I am not able to do so from another ... it is not just from my own boxes that I am ... Different traceroute programs use different protocols; ...
      (freebsd-net)
    • Re: iptables newbie
      ... I don't allow icmp type 30 in or out, ... yet I can traceroute from and to my boxes... ... To allow traceroute into my boxes, ... "If ignorance is bliss, why aren't there more happy people?" ...
      (comp.os.linux.security)
    • Re: disable traceroute to my host
      ... >> You can traceroute with any protocol. ... TCP is just as easy as UDP. ... > the third is just an informative message (like the second isn't ...
      (FreeBSD-Security)
    • RE: traceroute-like tool for UDP or TCP packet
      ... traceroute-like tool for UDP or TCP packet ... A ping is also just a ICMP ECHO ... > Traceroute implementations vary across OS platforms. ...
      (Security-Basics)