Re: does this error message mean anything bad?

From: Pietro Cerutti <gahr_at_gahr.ch>
Date: Tue, 12 Feb 2008 13:56:10 +0100
Aryeh M. Friedman wrote:
> Limiting closed port RST response from 266 to 200 packets/second.

In the average case, someone is doing a portscan against you. In the
worst case, they're trying to do a DOS attack.

I suggest that you set the following sysctl variables

net.inet.tcp.blackhole=2
net.inet.udp.blackhole=1

and that you read the man page for blackhole(4).

P.S. this would better fit on freebsd-questions_at_

-- 
Pietro Cerutti

PGP Public Key:
http://gahr.ch/pgp


Received on Tue Feb 12 2008 - 11:56:23 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:39:27 UTC