Re: Size of Tasks during ddos

From: Alan Cox
Date: Thu Sep 11 2003 - 16:28:48 EST


On Iau, 2003-09-11 at 22:23, Mike Fedyk wrote:
> On Thu, Sep 11, 2003 at 07:41:10PM +0100, Alan Cox wrote:
> > On Iau, 2003-09-11 at 18:27, Breno wrote:
> > > This is a Syn Flood DDoS
> >
> > echo "1" >/proc/sys/net/ipv4/tcp_syncookies
> >
> > End of problem.
>
> And why isn't this on by default when it's compiled in?

Syncookies protect you from DoS stuff but they have other side
effects on efficiency when they are in use.

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/