Why is tcp_syncookies off by default?
From: buck (buck_at_private.mil)
Date: 08/24/04
- Next message: JoeAley2003: "Re: HTTP SERVER ON FORWARDED MACHINE"
- Previous message: Jem Berkes: "Re: HELP Under Attack"
- Next in thread: Jem Berkes: "Re: Why is tcp_syncookies off by default?"
- Reply: Jem Berkes: "Re: Why is tcp_syncookies off by default?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Tue, 24 Aug 2004 09:27:56 -0700
The responses to the DoS posts here say to
echo 1 >/proc/sys/net/ipv4/tcp_syncookies.
Why is it not already 1? Is there some drawback/caveat/whatever?
buck
- Next message: JoeAley2003: "Re: HTTP SERVER ON FORWARDED MACHINE"
- Previous message: Jem Berkes: "Re: HELP Under Attack"
- Next in thread: Jem Berkes: "Re: Why is tcp_syncookies off by default?"
- Reply: Jem Berkes: "Re: Why is tcp_syncookies off by default?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|