nanog mailing list archives

Re: Service provider story about tracking down TCP RSTs


From: Bjørn Mork <bjorn () mork no>
Date: Sun, 02 Sep 2018 12:49:39 +0200

William Herrin <bill () herrin us> writes:

On Sun, Sep 2, 2018 at 6:06 AM, Bjørn Mork <bjorn () mork no> wrote:
William Herrin <bill () herrin us> writes:
 https://bill.herrin.us/network/anycasttcp.html

I didn't see a security section in your document.  Did you consider the
side effects of this sequence number abuse?

Hi Bjørn,

In the "issues and criticisms" section.

I can see the effect on syn cookies being disussed there, but I don't
think that covers all concerns wrt more predicatable sequence numbers.

See RFC6528, including its references.


Bjørn


Current thread: