Networking Forums

Networking Forums > Computer Networking > Linux Networking > Sequence Number Prediction

Reply
Thread Tools Display Modes

Sequence Number Prediction

 
 
bala
Guest
Posts: n/a

 
      02-21-2005, 07:01 AM
hi ,
i am designing a DDOS Defense System.i have a doubt regarding sequence
number prediction.(in linux 2.4)
Assume i send a TCP SYN packet from attacker A (impersonated as H) to
Server S.
the reply(SYN+ACK) does not reach A but A predicts sequence numbers
assigned by the server.Now A sends back an ACK Packet to S with the
predicted sequence number(as though it received SYN+ACK from the
server).Now A can totally get the connection establishment done with
S.H who receives the SYN+ACK may reset
the connection by sending RST To the server.So A Floods the queue
buffers of S with SYN Packets and sees to it that the SYN+ACK does not
reach H .
1)Now by introduction of SYN Cookies threby preventing SYN Flooding
at server
* can i make sure that H resets the connection to S(if
H is up)?
2)can i know for sure the sequence number allocation policy of
linux2.4?
please help .Thanks in advance.
 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
How to detect TCP sequence number wrap around in a netfilter kernel module Rohit Linux Networking 0 05-10-2007 06:28 AM
How to specify a big sequence number in hping2? Zheng Da Linux Networking 4 11-25-2006 07:15 PM
Linux Sequence Number Generation Sunny Linux Networking 0 01-26-2006 02:06 PM
Can a callsign number be transferred to a main number? Barry T Broadband 4 08-30-2005 07:49 PM
2.4 ghz range/erp/power prediction ?? Bubba Wireless Internet 1 10-31-2003 09:32 AM



1 2 3 4 5 6 7 8 9 10 11