[Serusers] SER Denial Of Service Attack Question

Java Rockx javarockx at gmail.com
Tue Feb 15 20:13:20 CET 2005


Hi All.

I see this line in config.h

#define MIN_UDP_PACKET        32


Does this mean that ser happily drops all UDP traffic with a size less than 32?

If so, it would seem that SER proxies on the internet have an exposure
to DoS attacks because someone could set 16-byte UDP packets to ser
and therefore cause problems.

Is this correct?

Regards,
Paul




More information about the sr-users mailing list