On Apr 9, 2007, at 11:54 AM, Nelson Minar wrote:

Could it be worse than that? I could imagine a UDP conntracking
implementation that kept a separate entry for source ip/port pair. If
the deranged client is using random new source ports in every request,
it'd go bad quickly.

That happens all the time. Not because of a single deranged client but instead there are lots of slightly less deranged clients behind a single IP address.

-j


--
Jeffrey Goldberg                        http://www.goldmark.org/jeff/

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
timekeepers mailing list
[email protected]
https://fortytwo.ch/mailman/cgi-bin/listinfo/timekeepers

Reply via email to