Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 10 Jan 2007 09:51:14 -0800
From:      Chuck Swiger <cswiger@mac.com>
To:        =?WINDOWS-1252?Q?Nejc_=8Akoberne?= <nejc@skoberne.net>
Cc:        questions@freebsd.org
Subject:   Re: Simple DoS
Message-ID:  <528B65CB-C5C5-42E7-9380-6EFA83339268@mac.com>
In-Reply-To: <45A4FDDA.8040909@skoberne.net>
References:  <45A4FDDA.8040909@skoberne.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Jan 10, 2007, at 6:53 AM, Nejc =8Akoberne wrote:
> yesterday one of our clients did something interesting (stupid): they
> connected both ends of an UTP cable to the same switch, to which our
> FreeBSD server was also connected.  [ ... ]
> Any ideas how to prevent such situations in the future? (I would like
> to do it on the server side, not on the "user side".)

This isn't a FreeBSD-specific issue, but a matter of controlling =20
access to the central networking hardware to only those qualified to =20
deal with it.  However, if you purchase higher-quality smart =20
switches, they implement the spanning tree protocol to detect and =20
break loops like the one you've described.

--=20
-Chuck




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?528B65CB-C5C5-42E7-9380-6EFA83339268>