Quoting Brandon High <armitage@freaks.com>: > I'm currently allowing ICMP to and from ports 0, 3 and 8. I'm just > afraid > that I'm breaking a few RFCs doing this. One thing that I forgot to mention in my previous post is that it is vitally important that you block all ICMP traffic to/from your broadcast and network addresses. This stops you and machines you route from being broadcast amplifiers. Regards Simon Murcott e. simon@murcott.net m. +6421 304555