← Back to team overview

sslug-teknik team mailing list archive

Re: echo "1" >/proc/sys/net/ipv4/tcp_syncookies

 

/klip
> Ja, men der er ikke forklaringer som i proc.txt filen. Eks:
> 
> "rp_filter
> ---------
>  
> Integer value determines if a source validation should be made. 1
> means yes, 0 means no. Disabled by default, but local/broadcast
> address spoofing is always on.
>  
> If you  set this to 1 on a router that is the only connection for a
> network to the net,  it  will  prevent  spoofing  attacks  against
> your internal networks (external addresses  can  still  be  spoofed),
> without the need for additional firewall rules."
/klip

Jeg ville eddermame også være glad for noget dokumentation på de der omtalte filer. Især til /proc/sys/net/ipv4/*
Man kan læse sig til meget i den der proc.txt. Det handler nok bare mere om netværksteori end at vide hvad filerne gør.

Mvh. Jesper



References