Skip site navigation (1)Skip section navigation (2)
Date:      11 Jun 2001 13:41:54 +0200
From:      Dag-Erling Smorgrav <des@ofug.org>
To:        stable@freebsd.org
Subject:   HEADS UP: TCP_RESTRICT_RST removed
Message-ID:  <xzp1yori6pp.fsf@flood.ping.uio.no>

next in thread | raw e-mail | index | archive | help
As some of you have already noticed, the TCP_RESTRICT_RST option has
disappeared.  FreeBSD has for some time had something called blackhole
that servers the same purpose as TCP_RESTRICT_RST, except better.

Let me add that most if not all of you who have complained about this
option's disappearance had no use for it in the first place.  FreeBSD
does RST rate limiting by default (through icmp_bandlim), and that
should be sufficient protection unless you're running an EFNet IRC
server or a similarly exposed high-profile server (and believe you me,
you have no idea what "exposed" and "high-profile" mean until you've
tried to admin an EFNet IRC server)

DES
-- 
Dag-Erling Smorgrav - des@ofug.org

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?xzp1yori6pp.fsf>