sslug-teknik team mailing list archive
-
sslug-teknik team
-
Mailing list archive
-
Message #44684
Re: echo "1" >/proc/sys/net/ipv4/tcp_syncookies
/klip
> Ja, men der er ikke forklaringer som i proc.txt filen. Eks:
>
> "rp_filter
> ---------
>
> Integer value determines if a source validation should be made. 1
> means yes, 0 means no. Disabled by default, but local/broadcast
> address spoofing is always on.
>
> If you set this to 1 on a router that is the only connection for a
> network to the net, it will prevent spoofing attacks against
> your internal networks (external addresses can still be spoofed),
> without the need for additional firewall rules."
/klip
Jeg ville eddermame også være glad for noget dokumentation på de der omtalte filer. Især til /proc/sys/net/ipv4/*
Man kan læse sig til meget i den der proc.txt. Det handler nok bare mere om netværksteori end at vide hvad filerne gør.
Mvh. Jesper
References