Re: Limiting closed port RST response from 381 to 200 p
From: Sheldon Hearn (sheldonh@starjuice.net)
Date: 04/15/02
- Next message: The Anarcat: "General Rate-limiting in syslog(3) (was: Limiting closed port RST response from 381 to 200 p)"
- Previous message: Andrew Johns: "Re: Limiting closed port RST response from 381 to 200 p"
- In reply to: Andrew Johns: "Re: Limiting closed port RST response from 381 to 200 p"
- Next in thread: The Anarcat: "General Rate-limiting in syslog(3) (was: Limiting closed port RST response from 381 to 200 p)"
- Reply: The Anarcat: "General Rate-limiting in syslog(3) (was: Limiting closed port RST response from 381 to 200 p)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: Sheldon Hearn <sheldonh@starjuice.net> To: Andrew Johns <johnsa@kpi.com.au> Date: Mon, 15 Apr 2002 16:51:51 +0200
On Tue, 16 Apr 2002 00:20:01 +1000, Andrew Johns wrote:
> Actually Sheldon I think that's a great idea - helps with
> syslog DoS somewhat as well. Anybody else care to contemplate
> making it either a default or sysctl (ICMP_BANDLIMIT_DOSLIMIT?)
In CURRENT, logging is conditional on a sysctl value; the message
format is unchanged from that of STABLE, but logging can be turned off
completely if desired. This seems to keep most people happy.
I don't think my preference (always seeing the messages, but having
syslog coalesce them) is representative of the majority of folks to whom
this matters.
Ciao,
Sheldon.
To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message
- Next message: The Anarcat: "General Rate-limiting in syslog(3) (was: Limiting closed port RST response from 381 to 200 p)"
- Previous message: Andrew Johns: "Re: Limiting closed port RST response from 381 to 200 p"
- In reply to: Andrew Johns: "Re: Limiting closed port RST response from 381 to 200 p"
- Next in thread: The Anarcat: "General Rate-limiting in syslog(3) (was: Limiting closed port RST response from 381 to 200 p)"
- Reply: The Anarcat: "General Rate-limiting in syslog(3) (was: Limiting closed port RST response from 381 to 200 p)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|