kudden Posted January 9, 2010 Share Posted January 9, 2010 Periodvis stoppar brandväggen ett intrång. Det står:brandväggen stoppar paket med felaktiga SYN-,ACK-och FINkombinationer. Vad betyder det??? Quote Link to comment Share on other sites More sharing options...
JoWa Posted January 9, 2010 Share Posted January 9, 2010 Om SYN och ACK: Flood attacks happen when thousands of packets of data are sent from a spoofed IP source address to a victims machine. The victims machine automatically sends back a response to these requests (a SYN packet) and waits for an acknowledgment (an ACK packet). But, because they were sent from a spoofed IP address, the victims machine will never receive any responses/acknowledgment packets. This results in a backlog of unanswered requests that begins to fill up the victims connection table. When the connection table is full, the victims machine will refuse to accept any new connections which means your computer will no longer be able to connect to the Internet, send email, use FTP services etc. When this is done multiple times from multiple sources it floods the victim machine, which has a limit of unacknowledged responses it can handle, and may cause it to crash. Quote Link to comment Share on other sites More sharing options...
kudden Posted January 9, 2010 Author Share Posted January 9, 2010 (edited) Om SYN och ACK: Flood attacks happen when thousands of packets of data are sent from a spoofed IP source address to a victim’s machine. The victim’s machine automatically sends back a response to these requests (a SYN packet) and waits for an acknowledgment (an ACK packet). But, because they were “sent” from a spoofed IP address, the victim’s machine will never receive any responses/acknowledgment packets. This results in a backlog of unanswered requests that begins to fill up the victim’s connection table. When the connection table is full, the victim’s machine will refuse to accept any new connections — which means your computer will no longer be able to connect to the Internet, send email, use FTP services etc. When this is done multiple times from multiple sources it floods the victim machine, which has a limit of unacknowledged responses it can handle, and may cause it to crash. Tack.Det står även intrångsförsök av typen felaktig TCP flaggkombination. Protokoll TCP extern ip 71.107.69.173 lokal port 42044..Det dyker upp var femte minut nu.Irriterande.Det är olika extern-ip. Edited January 9, 2010 by kudden Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.