Re: How stop DoS and SYN attack..

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Alberto Ferrer wrote:
2006/6/5, Brent Clark <bclark@xxxxxxxxxxxxxxx>:
Alberto Ferrer wrote:
>> > Jun 5 00:19:39 lnx1 kernel: [4322117.587000] fp=bad_packets:1 a=DROP
>> > IN=eth0 OUT= MAC=00:08:54:2f:8a:ac:00:0b:46:e2:04:00:08:00
>> > SRC=201.254.155.13 DST=200.68.95.25 LEN=40 TOS=0x00 PREC=0x00 TTL=244
>> > ID=0 PROTO=TCP SPT=28837 DPT=80 WINDOW=0 RES=0x00 RST URGP=0

Hi

Unless im mistaken, but why are you dropping on the RST status.

Just something im wondering.


whats that, what means, my english its a little bad .
Kind Regards
Brent Clark

Hi

Im not really qualified to assist (continue asking the guys from Netfilter Mailing List).

The reason for my email is because it looks like you DROPPING on the RST (Look at the end of the string "RES=0x00 RST URGP=0") flag (out of interest do you know TCP/IP and its flags etc).

Its maybe advisable to post your rulset and maybe someone will proof read it for you.

HTH and best of luck.

Kind Regards
Brent Clark




[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux