Subject: Re: net.inet.tcp.log_refused??
To: Ignatios Souvatzis <ignatios@cs.uni-bonn.de>
From: Manuel Bouyer <bouyer@antioche.lip6.fr>
List: tech-net
Date: 05/27/1999 14:24:01
On Thu, May 27, 1999 at 01:54:51PM +0200, Ignatios Souvatzis wrote:
> Given that the source destination still can't be trusted: a even better
> DOS attack hole.

Depend on how your log analizer is done. There can be trusted addresses which
will never appear in the filter.
Sure I woulnd't do this for a public server, but I still can see some use for
this.

--
Manuel Bouyer, LIP6, Universite Paris VI.           Manuel.Bouyer@lip6.fr
--