[prev in list] [next in list] [prev in thread] [next in thread]
List: openssh-unix-dev
Subject: Re: Does SCTP help against TCP reset attacks?
From: Steffen Nurpmeso <steffen () sdaoden ! eu>
Date: 2016-04-15 9:41:35
Message-ID: 20160415094135.vsyv6dv5N%steffen () sdaoden ! eu
[Download RAW message or body]
=C1ngel Gonz=E1lez <keisial@gmail.com> wrote:
|Steffen Nurpmeso wrote:
|> I don't know how you do it, i never managed a(n exposed) server
|> until January and now [.] i think what i have to face are TCP
|> RST attacks on SSH connections, leading to "connection reset"s
|> ["connection closed" on client side in fact] (of course).
|Are you sure that's the case? For RST attack, it would need to guess
|the right TCP sequence numbers.
|It seems more likely that the connection is timing out (maybe there's
|some firewall enforcing it?) and thus the other side considers it to be
|closed.
Yes there are many experts on this list who have a penetrating
knowledge of protocols and network behaviour, and i really would
prefer not having to face that attacks restart just as promptly.
Thank you!
--steffen
_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@mindrot.org
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic