Re: TCP SYN cookies and Bug #520668
On Sun, Feb 14, 2010 at 2:08 AM, Marco d'Itri <firstname.lastname@example.org> wrote:
> On Feb 13, Ben Hutchings <email@example.com> wrote:
>> The upstream default is that they are disabled. The onus is on
>> proponents to argue why this should be changed.
> The proposed rationale for the change is that SYN cookies are not used
> until the SYN queue is full and at that point it is more useful to have
> new TCP sessions without window scaling than no new TCP sessions at all.
> Do you disagree?
It might be instructive to look at the upstream netdev list, I found a
recentish thread about this topic:
Kinda a dissapointing thread, but it reveals a few points: