diff options
author | Mike Frantzen <frantzen@cvs.openbsd.org> | 2004-05-05 23:16:04 +0000 |
---|---|---|
committer | Mike Frantzen <frantzen@cvs.openbsd.org> | 2004-05-05 23:16:04 +0000 |
commit | 03fe38624159eac6e41dc6a190b5b866f9b76748 (patch) | |
tree | 5b58d58675b482a463883b257b61556403829b2a /sys/miscfs/procfs/procfs_status.c | |
parent | 8f6a4f2e535871b3eafb365b6ebe1de3a4e5bc57 (diff) |
Use RFC1323 PAWS timestamps as a logical extension to the conventional TCP
sequence numbers by taking advantage of the maximum 1KHz clock as an upperbound
on the timestamp. Typically gains 10 to 18 bits of additional security against
blind data insertion attacks. More if the TS Echo wasn't optional :-(
Enabled with: scrub on !lo0 all reassemble tcp
ok dhartmei@. documentation help from jmc@
Diffstat (limited to 'sys/miscfs/procfs/procfs_status.c')
0 files changed, 0 insertions, 0 deletions