Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 17 Nov 2005 21:35:48 -0500 (EST)
From:      "Bill Moran" <wmoran@potentialtech.com>
To:        "Antonio Gandara" <antonio@triforce.info>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: RST response in message log?
Message-ID:  <43885.162.51.212.16.1132281348.squirrel@www.potentialtech.com>
In-Reply-To: <003001c5ebe2$aa0e3040$8a0010ac@antonioh89t9q9>
References:  <003001c5ebe2$aa0e3040$8a0010ac@antonioh89t9q9>

next in thread | previous in thread | raw e-mail | index | archive | help
Antonio Gandara wrote:
> Hi,
>
> Just had a general question as to this message which appeared in the
> message
> log file and dmesg. While I understand it is reducing response to packets,
> I
> am perplexed as to what causes this to happen? I am running 4.11 Release.
>
> Nov 16 11:07:18 eagle /kernel: Limiting closed port RST response from 300
> to
> 200 packets per second

While there are other things that could cause this, it's almost always
indicative of a portscan.

The RSTs are limited to prevent DoS attacks from generating overly huge
amounts of traffic.

-- 
Bill Moran
Potential Technologies
http://www.potentialtech.com



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?43885.162.51.212.16.1132281348.squirrel>