Re: [Linux Diffserv] Re: [PATCH] Inbound Connection Control mechanism:

Alan Cox (alan@bagpuss.swansea.linux.org.uk)
Sun, 29 Jul 2001 17:27:50 -0400 (EDT)


> Our patch can be used along with SYN policing to prioritize incoming
> connection requests on a socket. SYN policing can be used to limit
> the rate of a particular class, but it cannot be used to prioritize a

No. Because you cant prove the packets are not spoofed. An attacker
becomes able to block classes

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/