Re: TCP: Treason uncloaked DoS ??

Andi Kleen (ak@suse.de)
19 Apr 2002 18:17:13 +0200


Tim Kay <timk@advfn.com> writes:
> that the connections are kept open if the client connecting doesn't actually
> go away so surely lots of these ocurring at once would overload a server. I
> have googled this and an occasional instance seems normal and could be down
> to a broken client, but lots from different IP addr's at once??

It is a TCP bug of the other side.

You can safely comment out the printk. It would be interesting however
to find out what the other side is running and yell at the vendor.

> I'm a bit concerned that maybe someone is warming up for a hit or something.

More likely someone released a new buggy TCP stack to the world.

-Andi
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/