Subject: Re: URGENT security help needed
To: David A. Gatwood <dgatwood@gatwood.net>
From: Michael G. Schabert <mikeride@mac.com>
List: port-mac68k
Date: 03/18/2002 02:50:31
At 8:45 PM -0800 3/17/02, David A. Gatwood wrote:
>I've just been informed that a critical server (running NetBSD-mac68k)
>just got yanked off the net because it was flooding the heck out of the
>network.  The machine has been in use for over two years without blinking.
>I suspect it's some sort of security vulnerability in the TCP stack
>somewhere, as I remember vaguely reading about something similar in NetBSD
>a while back.  Unfortunately, I can't find jack on the 'net about it.
>
>I don't have access to the machine currently.  I'll do a post-mortem
>tomorrow morning, but I doubt I'll find anything.  It just doesn't seem
>likely that anything outside the kernel on a Quadra 800 would be able to
>saturate multiple T1 lines....  :-)

But a failing NIC can.

Mike
-- 
Bikers don't *DO* taglines.