REJECT optionally generates port unreachable with faked SOUR
Michael Bauer
mihi@gmx.at
Tue, 04 Sep 2001 11:21:16 +0200 (CEST)
Morning Mr, Chapman
On 04-Sep-2001 Brad Chapman wrote:
> - grab dest address from IP header in skb, then use random to change
> bits around and assign as the source addr in new skb packet. Do
> this iff userspace did NOT ask for tcp-reset.
>
> The above shouldn't be too hard. Plus it has side benefits later on
> (anybody read Robert Love's patch for network entropy?)
Good idea. Shouldn't be too hard to implement. I think I'm gonna make a --with
fs-port-unreachable fs-host-unreachable etc.
where can I find Robert Loves patch?
greetings mihi
--
:wq
PGP/GPG key @ http://unet.univie.ac.at/~a9900470/mihi.asc