Ciao
Post by StanchezzaPing non usa il servizio echo per ottenere dei reply ?
Il servizio echo non usa la porta 7?
Questo intendevo.
Ma cio' non significa che sia l'unico (e nemmeno il principale) modo per
effettuare ping = copio/incollo p.es. da RFC-2925 :
************************************************************************
Ping is usually implemented using the Internet Control Message Protocol
(ICMP) "ECHO" facility. It is also possible to implement a ping
capability using alternate methods, some of which are:
==
1. Using the UDP echo port (7), if supported (defined by RFC 862).
2. Timing an SNMP query.
3. Timing a TCP connect attempt.
In general, almost any request/response flow can be used to generate
a round-trip time. Often many of the non-ICMP ECHO facility methods
stand a better chance of yielding a good response (not timing out for
example) since some routers don't honor Echo Requests (timeout
situation) or they are handled at lower priority, hence possibly giving
false indications of round trip times.
It must be noted that almost any of the various methods used for
generating a round-trip time can be considered a form of system attack
when used excessively. Sending a system requests too often can
negatively effect its performance. Attempting to connect to what is
supposed to be an unused port can be very unpredictable. There are
tools that attempt to connect to a range of TCP ports to test that any
receiving server can handle erroneous connection attempts.
It also is important to the management application using a remote ping
capability to know which method is being used. Different methods will
yield different response times since the protocol and resulting
processing will be different. It is RECOMMENDED that the ping
capability defined within this memo be implemented using the ICMP Echo
Facility.
************************************************************************
Pertanto l'echo a cui di base ci si riferisce per il ping e' l'ICMP Echo
type -> ved. http://www.iana.org/assignments/icmp-parameters . Pertanto,
tornando alla domanda iniziale del thread, non si blocca una porta (come
avviene su TCP/UDP) ma bensi' un tipo come quelli indicati nel link
quando si vuole filtrare lato WAN il ping base su ICMP.
--
|¯ \/¯ | /¯\ /¯__/¯__|-<|> http://planynet.hypermart.net/fastweb <|
|¯|\/|¯|/¯_¯\|(__\__ \-<|> * FAQ 1.5 ITGF it.tlc.gestori.fastweb <|
|_| |_/_/ \_\___|___/-<|> * SITO: http://planynet.hypermart.net <|
|>Togli/Remove .INVALID<|> * SITO: http://plany.fasthosting.it __<|