Video Screencast Help

EPP is logging ICMP type=3 code=3, by the hundreds

Created: 20 Nov 2012 | 2 comments

I am seeing log entries for every dns access, can be 60 to 80 occurances.  I have smart dns enabled.  Any idea why?  It is sure resulting in very slow web access.

 

Paul

Comments 2 CommentsJump to latest comment

.Brian's picture

What version are you running?

Are you filtering ICMP traffic?

 

Please click the "Mark as solution" link at bottom left on the post that best answers your question. This will benefit admins looking for a solution to the same problem.

Mithun Sanghavi's picture

Hello,

Check this Article 

Large delays for ICMP traffic when Reverse DNS is used with the DNS server listed as an IPS exclusion

http://www.symantec.com/docs/TECH186158

and Check this Thread: 

Port Scan Attack. Blocking 3-5 Every Minute.

https://www-secure.symantec.com/connect/forums/port-scan-attack-blocking-3-5-every-minute

Hope that helps!!

Mithun Sanghavi
Senior Consultant
MIM | MCSA | MCTS | STS | SSE | SSE+ | ITIL v3

Don't forget to mark your thread as 'SOLVED' with the answer that best helped you.