Subject: Re: Usability enhancement for IP6
To: Ignatios Souvatzis <>
From: Steven M. Bellovin <>
List: tech-net
Date: 02/08/2005 15:04:41
In message <>, Ignatios Souvatzis wr
>Content-Type: text/plain; charset=us-ascii
>Content-Disposition: inline
>Content-Transfer-Encoding: quoted-printable
>Bryan Phillippe wrote:
>> We should probably make an analogous change to tcp4 as well.  As someone
>> else pointed out, some firewalls (including the one I wrote for my
>> employer's network device) can return "administratively prohibited" for
>> blocked services.
>"can return"?=20
>What, if not this condition, would "administratively prohibited" be used=20

Some firewalls simply silently drop the packets, without returning 

		--Prof. Steven M. Bellovin,