netdev
[Top] [All Lists]

Re: [PATCH] fix small DoS on connect() (was Re: BUG: Unusual TCP Connect

To: Willy Tarreau <willy@xxxxxxxxx>
Subject: Re: [PATCH] fix small DoS on connect() (was Re: BUG: Unusual TCP Connect() results.)
From: Denis Vlasenko <vda@xxxxxxxxxxxxx>
Date: Sun, 12 Jun 2005 20:47:07 +0300
Cc: "David S. Miller" <davem@xxxxxxxxxxxxx>, xschmi00@xxxxxxxxxxxxxxxxxx, alastair@xxxxxxxxxxxx, linux-kernel@xxxxxxxxxxxxxxx, netdev@xxxxxxxxxxx
In-reply-to: <20050612173614.GA11157@xxxxxxxxxxxxxxxx>
References: <42A9C607.4030209@xxxxxxxxxxxx> <200506122010.33075.vda@xxxxxxxxxxxxx> <20050612173614.GA11157@xxxxxxxxxxxxxxxx>
Sender: netdev-bounce@xxxxxxxxxxx
User-agent: KMail/1.5.4
On Sunday 12 June 2005 20:36, Willy Tarreau wrote:
> On Sun, Jun 12, 2005 at 08:10:33PM +0300, Denis Vlasenko wrote:
> > > Does it seem appropriate for mainline ? In this case, I would also 
> > > backport
> > > it to 2.4 and send it to you for inclusion.
> > 
> > It does not contain a comment why it is configurable.
> 
> You're right. Better with this ?

Very nice. BTW, is there any real world applications which
ever used this?

> +     If you want backwards compatibility with every possible application,
> +     you should set it to 1. If you prefer to enhance security on your
> +     systems at the risk of breaking very rare specific applications, you'd
> +     better let it to 0.
> +     Default: 0

This text leaves an impression that they exist.
--
vda


<Prev in Thread] Current Thread [Next in Thread>