Here's a posting in ./ to an article about DoS attacks on hash functions.
http://slashdot.org/article.pl?sid=03/05/31/2157254&mode=thread&tid=126&tid=172
is LVS susceptible to this sort of attack on the connection hash table?
I would imagine that the client only has a small number of variables (the
port they are sending from?), the others being fixed (CIP, VIP:port).
and probably can't mount much of an attack even if they can choose the
ports at the clients end.
Joe
--
Joseph Mack PhD, Senior Systems Engineer, SAIC contractor
to the National Environmental Supercomputer Center,
ph# 919-541-0007, RTP, NC, USA. mailto:mack.joseph@xxxxxxx
|