Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 16 Sep 2005 09:19:11 -0400
From:      Bob Hall <rjhjr@cox.net>
To:        freebsd-questions@freebsd.org
Subject:   Re: ct 	Re: NMAP probing of network ports
Message-ID:  <20050916131911.GA36475@kongemord.krig.net>
In-Reply-To: <432abc54.2b3.6a6c.3021@canada.com>
References:  <432abc54.2b3.6a6c.3021@canada.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Fri, Sep 16, 2005 at 07:36:36AM -0500, Boris Karloff wrote:
> It appears that when FreeBSD is sent an invalid packet
> without the SYN or ACK bits set, it responds with a RESET
> reply regardless of the ipfw rules. It appears this is one
> of the things nmap is exploiting.
> 
> Any suggestions on how to modify this behavior?

man blackhole



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20050916131911.GA36475>