[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Limit the number of Router Advertisements processed on an interface



Thanks Marc.  This is a requirement.

Thus I will conclude that the kernel doesn't limit the number of RAs. I have to figure out a way to do this from user space.

Dheeraj

On Wed, Jun 15, 2022 at 11:49 AM Marc Haber <mh+debian-ipv6@zugschlus.de> wrote:
On Wed, Jun 15, 2022 at 10:23:18AM -0400, Dheeraj Kandula wrote:
> This is to avoid DOS attacks using RAs from being bombarded onto a linux
> machine.

You have malicious users on your LAN and cannot do anything against
them?

(RAs are link local communication and should not pass over routers,
thus, RAs must originate in the local network).

Greetings
Marc

--
-----------------------------------------------------------------------------
Marc Haber         | "I don't trust Computers. They | Mailadresse im Header
Leimen, Germany    |  lose things."    Winona Ryder | Fon: *49 6224 1600402
Nordisch by Nature |  How to make an American Quilt | Fax: *49 6224 1600421


Reply to: