Date: Sat, 2 Nov 2002 23:15:43 -0800 (PST) From: Julian Elischer <julian@elischer.org> To: Pawel Tyll <ofca@ofca.pl> Cc: brian@awfulhak.org, net@freebsd.org Subject: Re: PPPoEd Bug. Message-ID: <Pine.BSF.4.21.0211022311060.55233-100000@InterJet.elischer.org> In-Reply-To: <Pine.LNX.4.44.0211030217170.27234-100000@terror.org.pl>
next in thread | previous in thread | raw e-mail | index | archive | help
On Sun, 3 Nov 2002, Pawel Tyll wrote: > Hi Brian, > > Today, after few hours of fighting with FreeBSD, I found one nasty bug in > your PPPoEd implementation. It all started with accidental patching of > RASPPPoE windows PPPoE client (http://user.cs.tu-berlin.de/~normanb/). > > There is a patch for RASPPPoE, which allows it to connect to non-RFC > compliant PPPoE servers, like 3Com modems. PPPoEd supports such clients, > however - after processing request from such client, it doesn't talk to > normal RFC-compliant clients anymore :( The code for doing non complient pppoe was written to be used as a client. I'm amazed it works as a server too.. (and I wrote it). Am I right in understanding that you accidentally had a non-compliant client, and therefore discoverd that FreeBSD as a server could cope with that, but that once it did, it couldn't go back? > - it looks like a quite nice DoS > attack possibility for me, ISP, lots of RFC-compliant users, and one > kiddie with patched RASPPPoE...Patched clients can connect without > problems, PPPoE receives requests from normal clients, however it > (probably - didn't check it) answers them with modified ether-type, > which makes it impossible for them to 'hear' the answer. Hope you can > come up with a fix soon :) > I'll have a look. > Best regards, > > Pawel 'ofca' Tyll. > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe freebsd-net" in the body of the message > To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-net" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.21.0211022311060.55233-100000>