Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 02 Apr 2000 17:03:21 -0500
From:      Mike Tancsa <mike@sentex.net>
To:        Cliff Rowley <dozprompt@onsea.com>
Cc:        security@FreeBSD.ORG
Subject:   Re: MAJOR DDOS
Message-ID:  <4.2.2.20000402170029.0360cd28@mail.sentex.net>
In-Reply-To: <Pine.BSF.4.21.0004022027230.41380-100000@merlin.onsea.com>
References:  <4.2.2.20000402151228.035846d8@mail.sentex.net>

next in thread | previous in thread | raw e-mail | index | archive | help
At 08:28 PM 4/2/2000 +0100, Cliff Rowley wrote:
> > If its all "legitimate" traffic, I dont think
> > options         ICMP_BANDLIM
> > will help.
>
>It wouldnt help if it was not legitimate traffic either, since ICMP is
>portless (meaning that the connections are either TCP or UDP) - just
>clearing that up.

I thought the point of ICMP_BANDLIM was to throttle back the amount of ICMP 
error traffic in response to a whole whack of bogus connection attempts.

         ---Mike



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4.2.2.20000402170029.0360cd28>