On Fri, 2002-05-24 at 09:09, Patrick Morris wrote:
> The best defense against this sort of thing is to block all incoming 
> traffic to your servers on ports > 1024.  For machines acting strictly 
> as servers, in most cases they shouldn't be getting high-port traffic 
> anyway.

just to clarify, don't you mean:

"..block all traffic with the SYN flag set to your servers on ports >
1024"?

otherwise, most servers would not run correctly.

-jon
-- 
[EMAIL PROTECTED] || www.divisionbyzero.com
gpg key: www.divisionbyzero.com/pubkey.asc
think i have a virus? www.divisionbyzero.com/pgp.html
"You are in a twisty little maze of Sendmail rules, all confusing." 

Attachment: signature.asc
Description: This is a digitally signed message part

Reply via email to