Bugtraq mailing list archives

Re: Excellent host SYN-attack fix for BSD hosts


From: coxa () cableol net (Alan Cox)
Date: Tue, 15 Oct 1996 09:27:20 +0100


| It also breaks TCP's algorithm for
| recognizing stale data.

how so?

The ISS must always be going forward, and at a suitable rate. If you look
at things like the MD5 secret based secure sequence numbers you will
see that they are monotonically increasing w.r.t. a single IP address

Alan



Current thread: