Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 566886 - net-firewall/iptables: add "--enable-nfsynproxy" (SYNPROXY tool)
Summary: net-firewall/iptables: add "--enable-nfsynproxy" (SYNPROXY tool)
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: Current packages (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo's Team for Core System packages
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2015-11-26 08:17 UTC by Steffen Weber
Modified: 2015-11-28 20:26 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Steffen Weber 2015-11-26 08:17:12 UTC
The nfsynproxy tool is used to detect parameters for the SYNPROXY module. I'd find it useful to have this tool compiled by default or via a new USE flag.

See: http://rhelblog.redhat.com/2014/04/11/mitigate-tcp-syn-flood-attacks-with-red-hat-enterprise-linux-7-beta/

Reproducible: Always
Comment 1 SpanKY gentoo-dev 2015-11-28 20:26:22 UTC
added behind the USE=pcap flag too:
http://gitweb.gentoo.org/repo/gentoo.git/commit/?id=ace76fb957e46e87b595cb3811d16e41d5b5e6fb