Monday, December 9, 2013

Recommendations for hardening Linux against DDoS & syn flood attacks

Add the following lines in sysctl.conf....

# Vim /etc/ sysctl.conf
----------------------------------------------------------------------------------------------
net.ipv4.tcp_syncookies = 1           [# Prevent the common 'syn flood attack']
net.ipv4.conf.all.rp_filter = 1     [# Prevent the common 'DoS attack']
net.ipv4.conf.default.rp_filter = 1      [# Prevent the common 'DoS attack']
net.ipv4.tcp_max_syn_backlog = 2048
net.ipv4.tcp_synack_retries = 3
----------------------------------------------------------------------------------------------

1 comment:

  1. Caesars Entertainment's new, $1.6 billion sports betting app now available
    The 양주 출장마사지 Caesars Entertainment resort in Las 문경 출장샵 Vegas, along with 김제 출장마사지 its 광주 출장안마 sister property, Caesars Entertainment, 창원 출장샵

    ReplyDelete