Endpoint Protection Small Business Edition

 View Only
  • 1.  EPP is logging ICMP type=3 code=3, by the hundreds

    Posted Nov 20, 2012 04:10 PM

    I am seeing log entries for every dns access, can be 60 to 80 occurances.  I have smart dns enabled.  Any idea why?  It is sure resulting in very slow web access.

     

    Paul



  • 2.  RE: EPP is logging ICMP type=3 code=3, by the hundreds

    Posted Nov 20, 2012 09:18 PM

    What version are you running?

    Are you filtering ICMP traffic?

     



  • 3.  RE: EPP is logging ICMP type=3 code=3, by the hundreds

    Trusted Advisor
    Posted Nov 21, 2012 07:22 AM

    Hello,

    Check this Article 

    Large delays for ICMP traffic when Reverse DNS is used with the DNS server listed as an IPS exclusion

    http://www.symantec.com/docs/TECH186158

    and Check this Thread: 

    Port Scan Attack. Blocking 3-5 Every Minute.

    https://www-secure.symantec.com/connect/forums/port-scan-attack-blocking-3-5-every-minute

    Hope that helps!!