Woody Leonhard's no-bull news, tips and help for Windows, Office and more… Please disable your ad blocker – our (polite!) ads help keep AskWoody going!
Home icon Home icon Home icon Email icon RSS icon
  • FragmentSmack a real concern for servers — this month’s patches guard against it

    Home Forums AskWoody blog FragmentSmack a real concern for servers — this month’s patches guard against it

    This topic contains 3 replies, has 4 voices, and was last updated by  Paul T 4 weeks, 1 day ago.

    • Author
      Posts
    • #217897 Reply

      woody
      Da Boss

      If you’re running a Windows server, take note. FragmentSmack is a real DDoS vulnerability that’s slowly becoming more prevalent. Catalin Cimpanu at ZD
      [See the full post at: FragmentSmack a real concern for servers — this month’s patches guard against it]

      1 user thanked author for this post.
    • #217989 Reply

      GoneToPlaid
      AskWoody Lounger

      Many AV products and firewall programs allow you to block fragmented and/or malformed IP packets. Many routers also allow you to do the same. For example, I have my home router and my AV program with a built-in firewall configured to do this, as this general type of attack has been around for years.

      I wish that routers and firewall and AV programs had an additional setting such that if a flood of fragmented IP packets from a given IP address are detected, then that IP address would automatically be blocked for a user specified time period.

      1 user thanked author for this post.
      • #218020 Reply

        anonymous

        Hmm, good idea. Would it be like directing input to /dev/null ?

    • #218094 Reply

      Paul T
      AskWoody MVP

      DDoS attacks change all the time so any protection in a SOHO router is unlikely to remain effective.

      cheers, Paul

      1 user thanked author for this post.

    Please follow the -Lounge Rules- no personal attacks, no swearing, and politics/religion are relegated to the Rants forum.

    Reply To: FragmentSmack a real concern for servers — this month’s patches guard against it

    You can use BBCodes to format your content.
    Your account can't use Advanced BBCodes, they will be stripped before saving.

    Your information:


    Comments are closed.