NetFilter
[Top] [All Lists]

..prevention, was: syn DDoS attack solution

To: netfilter@lists.netfilter.org
Subject: ..prevention, was: syn DDoS attack solution
From: Arnt Karlsen <arnt@c2i.net>
Date: Tue, 5 Jun 2007 17:22:48 +0200
Delivered-to: sp-com-lists@consult.net
Delivered-to: netfilter-list1@securepoint.com
In-reply-to: <46657048.4040600@SCampbell.net>
List-archive: </pipermail/netfilter>
List-help: <mailto:netfilter-request@lists.netfilter.org?subject=help>
List-id: General discussion and user questions <netfilter.lists.netfilter.org>
List-post: <mailto:netfilter@lists.netfilter.org>
List-subscribe: <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=subscribe>
List-unsubscribe: <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=unsubscribe>
Organization: ing. Arnt Karlsen
References: <5C9E8CCEEB81ED498AC0C3B0054704F3029B6DE0@webmail.latis.com> <46651F04.9020709@bgs.hu> <46657048.4040600@SCampbell.net>
Sender: netfilter-bounces@lists.netfilter.org
User-agent: 007 ;o)
On Tue, 05 Jun 2007 10:16:40 -0400, Steven wrote in message 
<46657048.4040600@SCampbell.net>:

> And, most important for folks here, do egress filtering on your 
> firewall!    Help prevent zombie machines on your own networks from 
> being a problem, you can't stop your end users from bringing infections 
> into your network but you can control their spread.

..what tricks _are_ out there?  Set up some kinda p0f deamon and 
cut 'n tarpit any and all Wintendo network traffic attempts?  
Or even feed them LROS thru ActiveX if they need firm hints?

-- 
..med vennlig hilsen = with Kind Regards from Arnt... ;o)
...with a number of polar bear hunters in his ancestry...
  Scenarios always come in sets of three: 
  best case, worst case, and just in case.



<Prev in Thread] Current Thread [Next in Thread>