Team,
I know this should be easy but I have a cold today and things just are not working as they should. I am getting some random DoS attacks and I think just turning on ICMP and blocking outside ping should be the easiest fix. The Source IP is jumping all over the place so I really cant make an array. I have been looking over the twiki for a hour and not finding what I need. I am running version 6.4 on my MT. Appreciate any help you can give me. Also is what I am pulling from the logs about the DoS
Firewall[242]: DoS Attack - Smurf Attack IN=erouter0 OUT= MAC=80:b2:34:4a:77:c7:00:01:5c:64:d8:46:08:00 SRC=183.224.14.237 DST=173.10.26.96 LEN=40 TOS=00 PREC=0x20 TTL=33 ID=31758 PROTO=ICMP TYPE=13 CODE=0 2018/10/25 13:24:31 Notice
Firewall[242]: DoS Attack - ICMP Flooding IN=erouter0 OUT= MAC=80:b2:34:4a:77:c7:00:01:5c:64:d8:46:08:00 SRC=183.224.14.237 DST=173.10.26.96 LEN=96 TOS=00 PREC=0x20 TTL=48 ID=0 DF PROTO=ICMP TYPE=8 CODE=0 ID=49220 SEQ=22543 2018/10/25 13:24:25 Notice
Firewall[242]: DoS Attack - Smurf Attack IN=erouter0 OUT= MAC=80:b2:34:4a:77:c7:00:01:5c:64:d8:46:08:00 SRC=158.255.215.145 DST=173.10.26.110 LEN=40 TOS=00 PREC=0x20 TTL=25 ID=3123 PROTO=ICMP TYPE=13 CODE=0 2018/10/24 12:36:22 Notice
Firewall[242]: DoS Attack - Smurf Attack IN=erouter0 OUT= MAC=80:b2:34:4a:77:c7:00:01:5c:64:d8:46:08:00 SRC=213.183.56.106 DST=173.10.26.110 LEN=40 TOS=00 PREC=0x20 TTL=15 ID=29788 PROTO=ICMP TYPE=13 CODE=0 2018/10/24 12:06:12 Notice
Firewall[242]: DoS Attack - Smurf Attack IN=erouter0 OUT= MAC=80:b2:34:4a:77:c7:00:01:5c:64:d8:46:08:00 SRC=139.59.19.188 DST=173.10.26.110 LEN=40 TOS=00 PREC=0x20 TTL=34 ID=44589 CE PROTO=ICMP TYPE=13 CODE=0 2018/10/24 09:54:35 Notice
Firewall[242]: DoS Attack - Smurf Attack IN=erouter0 OUT= MAC=80:b2:34:4a:77:c7:00:01:5c:64:d8:46:08:00 SRC=159.65.198.141 DST=173.10.26.110 LEN=40 TOS=00 PREC=0x20 TTL=33 ID=15535 PROTO=ICMP TYPE=13 CODE=0 2018/10/24 09:05:06 Notice
Firewall[242]: DoS Attack - Smurf Attack IN=erouter0 OUT= MAC=80:b2:34:4a:77:c7:00:01:5c:64:d8:46:08:00 SRC=128.199.146.150 DST=173.10.26.110 LEN=40 TOS=00 PREC=0x20 TTL=39 ID=48997 CE PROTO=ICMP TYPE=13 CODE=0 2018/10/24 08:41:52 Notice