RE: Cisco filter question

Geo,

The problem is simple. If you put in a single route-map entry 2 matchs
entries, it must match both of them to set the interface to Null0. If you'd
like to match all ICMP packets and also 92 lenght packets, try to do this:

route-map nachi-worm permit 10
match ip address 199
set interface Null0
!
route-map nachi-worm permit 10
match length 92
set interface Null0
!

Good luck, tell me how it works.
Luckas.-