nanog mailing list archives
Re: Syn flooding attacks
From: Peter Evans <peter () gol ad jp>
Date: Tue, 21 Oct 1997 09:18:14 +1000
Phil Howard <phil () charon milepost com> wrote:
[about SYN flooding]
|I don't know of any routers that have these or other means of dealing with
|the SYN attacks.
If you search cco for "tcp intercept", you should find
something interesting. This feature was available in
11.2(4)F. ((paraphrased from memory))
Basically the router completed the handshaking then passed
on the completed connection to the inside host.
When under attack, it halves the timeouts (progressively?)
for half-open connections.
I don't know what happened to the F branch. It seems to have
been left behind.
Peter
----*
--
The Lost Patrol. Level 30~36, HP 800, AC -2. The Highway Patrol of
The Random Road, they keep the peace, they eat donuts. -TRR '97
O_u \\ // P-Chan ya \\ Global OnLine Japan
U \Beh! \\ // P-Moji-Yo! \\ Steam Engineering
Current thread:
- Syn flooding attacks Paulo Maffei (Oct 20)
- Re: Syn flooding attacks Phil Howard (Oct 20)
- Re: Syn flooding attacks Jeffrey C. Ollie (Oct 20)
- Re: Syn flooding attacks Peter Evans (Oct 20)
- Re: Syn flooding attacks Kenneth E. Gray (Oct 21)
- <Possible follow-ups>
- Re: Syn flooding attacks Vern Paxson (Oct 20)
- Re: Syn flooding attacks Joe Shaw (Oct 20)
- Re: Syn flooding attacks Perry E. Metzger (Oct 20)
- Re: Syn flooding attacks Joe Shaw (Oct 20)
- Re: Syn flooding attacks Jim Shankland (Oct 20)
- Re: Syn flooding attacks Perry E. Metzger (Oct 20)
- Re: Syn flooding attacks Phil Howard (Oct 20)
