Gentoo Archives: gentoo-user

From: darren kirby <bulliver@×××××××××××.org>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] TARPIT iptables target
Date: Fri, 24 Feb 2006 08:07:55
Message-Id: 200602232359.42769.bulliver@badcomputer.org
In Reply to: Re: [gentoo-user] TARPIT iptables target by Dave Jones
1 quoth the Dave Jones:
2 > TARPIT
3
4 Just a caveat: Keep in mind that if a bad guy figures out you are using
5 TARPIT, the very nature of it (ie: persistant connections) opens your box to
6 a severe DOS vulnerability, especially if said bad guy has a bot-net at his
7 disposal.
8
9 If you know what you are doing, fair enough, but do keep this in mind if you
10 intend to use TARPIT on an outward facing box.
11
12 -d
13 --
14 darren kirby :: Part of the problem since 1976 :: http://badcomputer.org
15 "...the number of UNIX installations has grown to 10, with more expected..."
16 - Dennis Ritchie and Ken Thompson, June 1972