Re: [PATCH] fix small DoS on connect() (was Re: BUG: Unusual TCP Connect() results.)

From: Denis Vlasenko
Date: Sun Jun 12 2005 - 14:31:28 EST


On Sunday 12 June 2005 20:36, Willy Tarreau wrote:
> On Sun, Jun 12, 2005 at 08:10:33PM +0300, Denis Vlasenko wrote:
> > > Does it seem appropriate for mainline ? In this case, I would also backport
> > > it to 2.4 and send it to you for inclusion.
> >
> > It does not contain a comment why it is configurable.
>
> You're right. Better with this ?

Very nice. BTW, is there any real world applications which
ever used this?

> + If you want backwards compatibility with every possible application,
> + you should set it to 1. If you prefer to enhance security on your
> + systems at the risk of breaking very rare specific applications, you'd
> + better let it to 0.
> + Default: 0

This text leaves an impression that they exist.
--
vda

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/