[nycbug-talk] tarpitting

George Georgalis george
Thu Jul 28 12:58:36 EDT 2005


How many connections can openbsd sustain in a tarpit capacity?  How
effective is tarpitting against attackers? Isn't an attacker able
to release a tcp connect that gets tarpitted? (even if he must
intentionally do so or code to do so?)

(I'm not really concerned about slowing worms here, but that is an
obvious advantage, if the worm is not smart enough to release the
connection.)

// George

-- 
George Georgalis, systems architect, administrator <IXOYE><
http://galis.org/ cell:646-331-2027 mailto:george at galis.org




More information about the talk mailing list