Re: missing SYN_RECV in netstat

2019-08-22 Thread Theo de Raadt
Peter J. Philipp wrote: > Hi, > > On the NANOG list there is a thread about something synflooding: > https://mailman.nanog.org/pipermail/nanog/2019-August/102713.html > > Most of my hosts are synflooded, and I was wondering why my OpenBSD > hosts don't show any SYN_RECV states in a netstat

Re: missing SYN_RECV in netstat

2019-08-20 Thread Claudio Jeker
On Tue, Aug 20, 2019 at 07:36:11PM +0200, Peter J. Philipp wrote: > Hi, > > On the NANOG list there is a thread about something synflooding: > https://mailman.nanog.org/pipermail/nanog/2019-August/102713.html > > Most of my hosts are synflooded, and I was wondering why my OpenBSD > hosts don't

Re: missing SYN_RECV in netstat

2019-08-20 Thread Peter J. Philipp
Never mind, I exited airhead mode.  pfctl -ss does what I need. However I approached things from non-root perspective and pfctl requires root privs.  Sometimes I surprise myself that I have root. Cheers, -peter On 8/20/19 7:36 PM, Peter J. Philipp wrote: Hi, On the NANOG list there is a

missing SYN_RECV in netstat

2019-08-20 Thread Peter J. Philipp
Hi, On the NANOG list there is a thread about something synflooding: https://mailman.nanog.org/pipermail/nanog/2019-August/102713.html Most of my hosts are synflooded, and I was wondering why my OpenBSD hosts don't show any SYN_RECV states in a netstat -nafinet. I had to tcpdump to see a