[clug] Blocking wierd packets...

Martijn van Oosterhout kleptog at svana.org
Wed Aug 4 03:12:27 GMT 2004


My firewall is dropping whacky packets looking like:

ip_conntrack_tcp: INVALID: Out of window data; SEQ is over the upper bound (over the window of the receiver)
ip_conntrack_tcp: INVALID: invalid TCP flag combination
ip_conntrack_tcp: INVALID: bad TCP checksum 

Should I worry about this? Seems to me dropping them is a pretty safe
thing to do in any case... Maybe the latest virus?
-- 
Martijn van Oosterhout   <kleptog at svana.org>   http://svana.org/kleptog/
> Patent. n. Genius is 5% inspiration and 95% perspiration. A patent is a
> tool for doing 5% of the work and then sitting around waiting for someone
> else to do the other 95% so you can sue them.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 232 bytes
Desc: not available
Url : http://lists.samba.org/archive/linux/attachments/20040804/002a239b/attachment.bin


More information about the linux mailing list