Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 19 May 1999 09:59:30 +0200 (MET DST)
From:      John K <john@volvo.se>
To:        Tony <wop@uwsnet.com>
Cc:        freebsd-questions@FreeBSD.ORG
Subject:   Re: SYN FLOODS
Message-ID:  <Pine.BSD/.3.91.990519094129.28004B-100000@nike.volvo.se>
In-Reply-To: <3741E64C.BE07B1E4@uwsnet.com>

next in thread | previous in thread | raw e-mail | index | archive | help

Hi,
Im quite new to FreeBSD, but
setting up a  box as a Firewall and Address Translator should work,=20
if you have the possibility. Depending in how may machines you want to=20
protect (and from what). If you have a lot of traffic going thru a=20
firewall, lots of processing power may be needed.=20

This weekend went to a LAN-Game party thing,
the organizors had totally screwed upp the network. There were about 500=20
computers but no Subnets!!!
Anyway i wanted to protect my W98 macinhe from brodcast storms and such,=20
so i put it behind a FreeBSD box, with an open firewall but running=20
natd with the=20
"-d" switch, which i think denyes incomming traffic if it isn=B4t requested=
=20
by machines on the "inside". I know this maybe far from the best option=20
but the FreeBSD machine (P120, 80Mb Ram, FBSD 3-1R) handeled sweet,
and also protected my stupid W98 box from IP spoofing.

Check the man pages for natd. it=B4s a pretty good general guide on how to=
=20
set it up.

Good Luck
/john

On Tue, 18 May 1999, Tony wrote:

> Hello,
>=20
>     I am having trouble with DOS attacks via SYN FLOODS i was told there
> was a way to prevent these with FreeBSD if there is can you please reply
> back with some information.
>=20
=20
=20














To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSD/.3.91.990519094129.28004B-100000>