看板 FB_security 關於我們 聯絡資訊
蛈赻玾玹 27 畷眢曬2006 15:05, Pawel Worach 恔倅蚆휺 > > I just noticed, that on my recent "6.1-STABLE #4: Thu Jun 騸" amd64 > > system attempts to connect to a bogus port (like 6666) hang instead of > > failing with "Connection refused" immediately, as they on other systems. > > Using sysctl net.inet.tcp.blackhole=1 ? Yes, that's what it was... Got me thinking, though... Should the blackhole setting apply to localhost (and local IP addresses) at all? It is a security measure -- would be nicer to reduce its impact on legitimate activity... -mi _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"