Security Incidents mailing list archives

Re: TCP/IP reference [WAS: UDP packets from Apache ? New DDOS ?]


From: Jess Garcia <jess () jessland net>
Date: Fri, 09 Jul 2004 16:11:12 +0200

TCP/IP Illustrated is a wonderful resource, but sometimes you may find some details are missing. In those cases, the RFCs are the way to go.

You may find these useful:

http://www.jessland.net/ids/protocols/index.html

Check also the references under the Protocols section here:

http://www.jessland.net/ids/resources/id_resources.html

Cheers,

JESS


Strand, John wrote:
As usual thanks for all of your input.

I believe that the TCP/IP Illustrated book is the way I am going to go. I
have been using the SANS reference for a while but it doesn't have
everything. And I want to wean myself form ethereal dependence.


Thanks again,

John

-----Original Message-----
From: Coyle, Brian [mailto:Brian.Coyle () disney com] Sent: Thursday, July 08, 2004 12:06 PM
To: Strand, John
Cc: incidents () securityfocus com
Subject: TCP/IP reference [WAS: UDP packets from Apache ? New DDOS ?]


From: Strand, John [mailto:John.Strand () mms gov]

Does any one happen to know of a reference (online or otherwise) which
breaks down the possible options for each TCP/IP header field?


http://www.sans.org/resources/tcpip.pdf


                                    -- Brian, GCIA


Current thread: