Re: How to *ENABLE* icmp redirect on windows xp workstation ?



On May 17, 9:10 am, "Ace Fekay [MVP]" <PleaseAs...@xxxxxxxxxxxxxx>
wrote:
Innews:d3a4a149-54f3-4d0d-8b7f-610efbab1e4d@xxxxxxxxxxxxxxxxxxxxxxxxxxxx,
Zealot <Zealot0...@xxxxxxxxx> typed:

Hi:

I have some problem with icmpredirect.

I already set the register key HKEY_LOCAL_MACHINE\SYSTEM
\CurrentControlSet\Services\Tcpip\Parameters\EnableICMPRedirects to 1,
and let icmpredirectbypass the windows firewall.

I checked that gateway send the icmpredirectpacket, but it seems
that windows just ignore it.

Thanks.

What operating system version? It may be ignoring it. Many places offer how
to disable it, such as the following link, but this link also explains why
Windows 2000 will ignore it.

Cannot Disable ICMP Redirects By Changing "EnableICMPRedirect" Registry
Valuehttp://support.microsoft.com/default.aspx?scid=kb;en-us;293626

I'm highly curious: What was the design intentions behind it's requirement
in your infrastructure especially using a Windows machine? Reason why I'm
asking is it's normally used for between routers for route information and
it's use is not considered a "best practice," whereas a Windows host simply
has only one default gateway (the router) and the gateway handles routing.
Unless you have multiple gateways?

For those of you out there not familiar with this feature, here you go:
ICMP Redirects explanation:http://www.cymru.com/gillsr/documents/icmp-redirects-are-bad.htm

A little old, but the idea is the same:
Explanation of ICMPRedirectBehaviorhttp://support.microsoft.com/kb/q195686/

--
Regards,
Ace

This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT,
MVP Microsoft MVP - Directory Services
Microsoft Certified Trainer

For urgent issues, you may want to contact Microsoft PSS directly. Please
checkhttp://support.microsoft.comfor regional support phone numbers.

Infinite Diversities in Infinite Combinations

Thanks for your reply.

I have tested on Windows XP SP2. It doesn't work. But on linux box, it
works

There are 2 gateways in my innernet. One for internet, the other for
innernet.
I'm using DHCP on the LAN and point default gateway to the internat
gateway,
and the internet gateway forward the packet to innernet gateway. but
there
are some application which requires low latency and high bindwidth
need to
access the service on the other LAN of innernet. It is very hard to
install
route entry on every mechine in the LAN.
.



Relevant Pages

  • Re: Windows File Protection/Wrong CD Problem
    ... Thanks for your comments and suggestion regarding contacting Gateway ... support). ... "Files that are required for Windows to run properly have been replaced by ... > it was pre-installed on your computer by Gateway, you are running an OEM ...
    (microsoft.public.windows.file_system)
  • Re: Working crash
    ... I talked to a Gateway tech today. ... Windows Vista Home Premium ... Rick Rogers, ...
    (microsoft.public.windows.vista.general)
  • Re: Not a "Genuine Copy", and an "Invalid Activation Key" from Gat
    ... Installing SP1 changes the underlying code that pirates use to counterfeit the Windows Vista DVD. ... OEM copies, regardless of whether Gateway purchased it or you bought it yourself come with no Microsoft support; sadly those are the rules, that is why OEM are less expensive that retail copies. ... The information in this mail/post is supplied "as is". ...
    (microsoft.public.windows.vista.installation_setup)
  • Re: Windows File Protection/Wrong CD Problem
    ... I didn't follow the links from there because I don't have a Gateway or the support documents or that protected partition with all those files and probably would not have understood further instructions. ... For an OEM-installed WinXP, your support comes from the OEM, not from Microsoft. ... Microsoft Windows MVP ...
    (microsoft.public.windows.file_system)
  • Re: replacing motherboard questions
    ... I just bought a used Gateway E-2000 with a Pentium 4 and a very small, very noisy hard drive, and all the disks for Window 2000. ... The Windows XP user license for the HP is very likely an OEM license that does not authorize you to use the Operating System on another computer. ...
    (microsoft.public.windowsxp.basics)

Loading