Other possible protection against RST/SYN attacks (was Re: TCP
RST attack
E.B. Dreger
eddy+public+spam at noc.everquick.net
Wed Apr 21 15:01:51 PDT 2004
MT> Date: Wed, 21 Apr 2004 12:30:40 -0400
MT> From: Mike Tancsa
MT> If the attacker were on the same subnet this would not do
MT> anything, but you have larger problems if this is the case.
Indeed. Anti-spoofing, per-switchport MAC restrictions, and
hardcoded ARP entries for routers all go a long way toward
improving security. :-)
Eddy
--
EverQuick Internet - http://www.everquick.net/
A division of Brotsman & Dreger, Inc. - http://www.brotsman.com/
Bandwidth, consulting, e-commerce, hosting, and network building
Phone: +1 785 865 5885 Lawrence and [inter]national
Phone: +1 316 794 8922 Wichita
_________________________________________________________________
DO NOT send mail to the following addresses :
blacklist at brics.com -or- alfra at intc.net -or- curbjmp at intc.net
Sending mail to spambait addresses is a great way to get blocked.
More information about the freebsd-security
mailing list