What Worked - What Didn't

Martin Cooper mjc at cooper.org.uk
Mon Sep 17 22:31:26 UTC 2001


Alex Bligh <alex at alex.org.uk> writes:

> --On Monday, 17 September, 2001 2:32 PM -0400 "Patrick W. Gilmore"
> <patrick at ianai.net> wrote:
> 
> > Maybe I missed something?
> 
> Only all the well documented attacks (including DoS).
> Think about sending RST to BGP port (and other random
> ports) on your routers.

I thought TCP stacks were supposed to do sequence number checking on
RST's to make sure they fell within the bounds of the unacknowledged
portion of the current window? Or is Cisco's implementation broken?

M.



More information about the NANOG mailing list