Subject: The syncookies firewall breaking problem are corrected?


Hellow Guys, How are you?

I search in kernel archives and Changelogs for information about the
syncookies firewall breaking problem , where one person can bypass the
firewall in one machine with TCP SYNCOOKIES enabled and where the firewall
are based on SYN filtering to block only incoming TCP connections, but let
outgoing connections pass.

The lastest stable version of kernel 2.4.17 have it corrected?
If yes, in which version of kernel it are corrected?
If not, when it will be corrected?

?

Thanks a lot for attention and sorry for my poor English.


2002-01-02 13:41:06

by Sascha Andres

[permalink] [raw]
Subject: Re: The syncookies firewall breaking problem are corrected?

hi,
On Wed, Jan 02, 2002 at 11:02:12AM -0200, Leonardo Pimenta Gonzalez wrote:
> The lastest stable version of kernel 2.4.17 have it corrected?
yes.
> If yes, in which version of kernel it are corrected?
2.4.15 (?); but you should use at least 2.4.16.

ciao sascha

--
Sascha Andres [email protected]
http://www.programmers-world.com