syn cookies

From: Aaditya Rai (arai@speedera.com)
Date: Sun Mar 05 2000 - 03:46:52 EST

  • Next message: Niels Kristian Bech Jensen: "Compiler bug (Was: IRQ/IO-APIC problem in pre-patch-2.3.50-1 ?)"

    Ok, so to try syn-cookies, I flooded my hp linux box (2.2.12) with fake
    syn packets. And sure enuf even after the queue (bypassed by cookies,
    anyway) was full, a legitimate connection was allowed. But it went
    something like this:

    SERVER : Already SYN flooded, SYN Cookies on.

                                     S
    Legit Client -----------> Server

                                        SA
    Legit Client <----------- Server // Inspite of flood!!

                                            A
    Legit Client ------------> Server
    //connection est.

                                           R
    Legit Client <----------- Server // :-( What
    happened

    I wold be grateful to someone who can solve the mystry of this last
    reset packet for me.

    Thanks!!
    Aadi.

    -
    To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
    the body of a message to majordomo@vger.rutgers.edu
    Please read the FAQ at http://www.tux.org/lkml/



    This archive was generated by hypermail 2b29 : Sun Mar 05 2000 - 01:50:41 EST