Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 23 Mar 2001 08:11:44 +0700 (ICT)
From:      Olivier Nicole <on@cs.ait.ac.th>
To:        ostap@ukrpost.net
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: DoS attack - advice needed
Message-ID:  <200103230111.IAA07068@banyan.cs.ait.ac.th>
In-Reply-To: <3ABA09E0.141711C9@ukrpost.net> (message from ostap on Thu, 22 Mar 2001 16:19:12 %2B0200)
References:   <3ABA09E0.141711C9@ukrpost.net>

next in thread | previous in thread | raw e-mail | index | archive | help
>i'm interested in the ways how this can be done, and what is needeed
>to prevent such attacks on 3.x freebsd, without blocking all icmp
>traffic.

One solution I heard about is to limit the bandwidth available for
ICMP (say 5% of your total bandwidth). Of course during a DoS attack
no valid ICMP will get through but at least your network will still be
working.

Regards,

Olivier

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200103230111.IAA07068>