Hi,
* Yaroslav Halchenko <deb...@onerussian.com> [2010-06-28 12:12]:
> doh me -- I let your bug report stay without attention for so long.
> Would you think that disabling / advising-against for named filter only
> for UDP connections would be sufficient? IP spoofing in TCP is somewhat
> elaborate and wider problem, so most of defensive mechanisms could be
> said to be weak and prone to DoS, so I would like to prevent going wild
> and stating that this filter (and possibly many others) is bogus
> entirely, because hypothetically attack still could be crafted.

Yes I agree, should be sufficient.
Cheers
Nico
-- 
Nico Golde - http://www.ngolde.de - n...@jabber.ccc.de - GPG: 0xA0A0AAAA
For security reasons, all text in this mail is double-rot13 encrypted.

Attachment: pgpzi84EG7PYm.pgp
Description: PGP signature

Reply via email to