Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 9 Feb 2000 11:29:23 -0800
From:      Alfred Perlstein <bright@wintelcom.net>
To:        John <papalia@udel.edu>
Cc:        freebsd-questions@FreeBSD.ORG
Subject:   Re: ICMP_BANDLIM
Message-ID:  <20000209112923.Y17536@fw.wintelcom.net>
In-Reply-To: <4.1.20000209133845.0094c1c0@mail.udel.edu>; from papalia@udel.edu on Wed, Feb 09, 2000 at 01:40:20PM -0500
References:  <4.1.20000209133845.0094c1c0@mail.udel.edu>

next in thread | previous in thread | raw e-mail | index | archive | help
* John <papalia@udel.edu> [000209 11:10] wrote:
> Hey all...
> 
> With all the attacks going on on yahoo, ebay, etrade, etc, it reminded of a
> question I had a while back but forgot to ask...
> 
> What exactly does the "ICMP_BANDLIM" kernel option do to provide
> 'protection'?  Not much in the LINT file on it, and I can't search, so I
> thought I'd ask :)

It restricts the amount of responces you will send in responce to bad
packets.

If someone is sending you 100mbit of grabage down your pipe, you don't
want to overload the system and connection by forcing it to respond
to each and every packet.

-Alfred


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20000209112923.Y17536>