Are there any benefits from disabling Ping/ICMP requests on servers?
I've read where people say to do it but I can't seem to find any real benefits with it. Only more likely to cause more problems.
EDIT: All types of ICMP packets.
Are there any benefits from disabling Ping/ICMP requests on servers?
I've read where people say to do it but I can't seem to find any real benefits with it. Only more likely to cause more problems.
EDIT: All types of ICMP packets.
The theory is that it reduces the amount of information available to attackers. A good traceroute can be most informative.
In addition, and in theory, every additional service running on a machine is a possible source of vulnerabilities. The thingumajig that answers ICMP requests is no exception, although they are mostly very old and small thingumajigs whose bugs got shaken out long ago.
As always, there is a decision to be made of security vs convenience. Is the small increase in security worth the inconvenience of breaking standard diagnostic tools?