[prev in list] [next in list] [prev in thread] [next in thread] 

List:       openssh-unix-dev
Subject:    Re: Does SCTP help against TCP reset attacks?
From:       Steffen Nurpmeso <steffen () sdaoden ! eu>
Date:       2016-04-15 9:41:35
Message-ID: 20160415094135.vsyv6dv5N%steffen () sdaoden ! eu
[Download RAW message or body]

=C1ngel Gonz=E1lez <keisial@gmail.com> wrote:
 |Steffen Nurpmeso wrote:
 |>    I don't know how you do it, i never managed a(n exposed) server
 |>    until January and now [.] i think what i have to face are TCP
 |>    RST attacks on SSH connections, leading to "connection reset"s
 |>    ["connection closed" on client side in fact] (of course).

 |Are you sure that's the case? For RST attack, it would need to guess
 |the right TCP sequence numbers.
 |It seems more likely that the connection is timing out (maybe there's
 |some firewall enforcing it?) and thus the other side considers it to be
 |closed.

Yes there are many experts on this list who have a penetrating
knowledge of protocols and network behaviour, and i really would
prefer not having to face that attacks restart just as promptly.

Thank you!

--steffen
_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@mindrot.org
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic