Login | Register For Free | Help
Search for: (Advanced)

Mailing List Archive: iptables: Devel

hashlimit match : how is that to use hop count as the hash info?

 

 

iptables devel RSS feed   Index | Next | Previous | View Threaded


jwpark at whitecode

Aug 31, 2007, 11:16 PM

Post #1 of 1 (689 views)
Permalink
hashlimit match : how is that to use hop count as the hash info?

Hi,

Is it possible to use hop count (TTL) as the hash value?

I can’t find the way to defend against spoofing based DDoS attacks.

If the hop count and destination ip and destination port is used as hash value, it seems to be effective to defend against spoofing based DDoS attacks,

because the attacker do not spoof the hop count, and TTL value is of most packets will be different.

Sorry for my poor English!

iptables devel RSS feed   Index | Next | Previous | View Threaded
 
 


Interested in having your list archived? Contact Gossamer Threads
 
  Web Applications & Managed Hosting Powered by Gossamer Threads Inc.