[4304] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: SYN floods continue

daemon@ATHENA.MIT.EDU (Justin W. Newton)
Wed Sep 11 16:16:24 1996

Date: Wed, 11 Sep 1996 16:22:57 -0400
To: "Larry J. Plato" <ljp@ans.net>, jon@branch.com (Jon Zeeff)
From: "Justin W. Newton" <justin@erols.com>
Cc: alexis@panix.com, nanog@merit.edu

At 06:43 PM 9/11/96 +0000, Larry J. Plato wrote:
>If you can write a SYN flooder you can trivialy add the call to
>to generate a random source address....
>
>IMHO this is not a win.

Right, but if I am only allowing addresses which I own to leave my network,
and everyone else does the same, someone could only forge source addresses
which come from inside my network if they are dialed in to me.  This makes
he narrowing down process much easier.

Justin Newton
Internet Architect
Erol's Internet Services

home help back first fref pref prev next nref lref last post