Thank you for taking the time to report the following comment to the administrator of this site.
Please complete this short form and click the submit button to process your report.
Comment in question
Posted by TacACK, on 21-11-2009 09:46,
Great Article Paul! When you mentioned this to me on twitter, i was kinda surprised over the PING's which are sent out. But i have one question. Suppose the firewall has 3 interfaces ( Inside, DMZ and Outside) and a packet arrives on the inside interface destined to a remote address for which there is no entry available in the CAM table. Will it send pings on both the dmz and outside interfaces?
Regarding the BPDU's i'm confused too. 1) Below Ethertype 0x600 nothing's permitted ( ex : CDP, IPv6 , ISIS ,etc 2) STP BPDU's have to be explicitly permitted using ethertype ACL's