Bugtraq mailing list archives

Re: A new TCP/IP blind data injection technique?


From: Kris Kennaway <kris () FreeBSD org>
Date: Wed, 10 Dec 2003 15:59:33 -0800

On Thu, Dec 11, 2003 at 12:28:28AM +0100, Michal Zalewski wrote:

  2. Random IP ID numbers, a feature of some systems (OpenBSD?), although also
     risky (increasing reassembly collission probability), make the attack
     more difficult.

FreeBSD also has the option of randomizing the IP ID.

Kris


Current thread: