Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 18 May 2002 17:05:56 -0700
From:      Lars Eggert <larse@ISI.EDU>
To:        Terry Lambert <tlambert2@mindspring.com>
Cc:        Attila Nagy <bra@fsn.hu>, John Hay <jhay@icomtek.csir.co.za>, freebsd-arch@FreeBSD.ORG, freebsd-net@FreeBSD.ORG
Subject:   Re: HEADS UP: ALTQ integration developer preview
Message-ID:  <3CE6EC64.3060704@isi.edu>
References:  <200205181012.g4IACfe52918@zibbi.icomtek.csir.co.za> <Pine.LNX.4.44.0205181343360.10862-100000@scribble.fsn.hu> <3CE6DA0F.C4D8C289@mindspring.com>

next in thread | previous in thread | raw e-mail | index | archive | help

[-- Attachment #1 --]
Terry Lambert wrote:
> The really cool thing is that this means I can shout on the wire at
> the right time, cause a collision, and effectively stace an undetectable
> denial of service attack against your servers, by making it drop large
> UDP datagrams IP frags.

This "attack" works against any other protocol as well, including TCP. 
If you can create collisions "at the right time", you can disable all 
retransmission schemes. The kicker is - how?

Lars
-- 
Lars Eggert <larse@isi.edu>           USC Information Sciences Institute

[-- Attachment #2 --]
0	*H
010	+0	*H
00G0
	*H
010	UZA10UWestern Cape10U	Cape Town10
U
Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.300
010824164000Z
020824164000Z0T10
UEggert1
0U*Lars10ULars Eggert10	*H
	
larse@isi.edu00
	*H
0|\Pw v~~FDooӦA\-	 Cˀ4.)&{肋,z(ܷر߈T7_'txGH^tt/ҹB8%t<#ֲNV0T0*+e!000L2uMyffBNUbNJJcdZ2s0U0
larse@isi.edu0U00
	*H
aJPMՒ]cѭC+kS+wZ1gY",YT41
j6:~℩D~Kؚ‡l=u(ՎM?cF7@}T00G0
	*H
010	UZA10UWestern Cape10U	Cape Town10
U
Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.300
010824164000Z
020824164000Z0T10
UEggert1
0U*Lars10ULars Eggert10	*H
	
larse@isi.edu00
	*H
0|\Pw v~~FDooӦA\-	 Cˀ4.)&{肋,z(ܷر߈T7_'txGH^tt/ҹB8%t<#ֲNV0T0*+e!000L2uMyffBNUbNJJcdZ2s0U0
larse@isi.edu0U00
	*H
aJPMՒ]cѭC+kS+wZ1gY",YT41
j6:~℩D~Kؚ‡l=u(ՎM?cF7@}T080fErtcvE.0
	*H
010	UZA10UWestern Cape10U	Cape Town10U
Thawte Consulting1(0&UCertification Services Division1$0"UThawte Personal Freemail CA1+0)	*H
	personal-freemail@thawte.com0
000830000000Z
040827235959Z010	UZA10UWestern Cape10U	Cape Town10
U
Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.3000
	*H
032c	%E>nx'gڈD)c5*mp<ܮto034qmOe
KaU5u'rװ|CBPQ<9TIf-	kiN0L0)U"0 010UPrivateLabel1-2970U00U0
	*H
1KG]qSl]y=&b""I'{9$
*8PUl
LGlX1B	li+@]jy.%݊
Z<D&iHΥbb100010	UZA10UWestern Cape10U	Cape Town10
U
Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.30G0	+a0	*H
	1	*H
0	*H
	1
020519000558Z0#	*H
	11?rt0R	*H
	1E0C0
*H
0*H
0
*H
@0+0
*H
(0*H
	1010	UZA10UWestern Cape10U	Cape Town10
U
Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.30G0
	*H
Oy;Tc-|3bN
c	6Z}lj]DV#gE2('4^-6̺m72Q%dZ(&ᳪ1P,

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3CE6EC64.3060704>