I didn't see the mail for this, but I've reviewed the case history on sac.sfbay. It seems reasonable, but I do have some questions:

1) Can an ill-behaved application cause bad things to happen to the TCP stack by setting RTO or abort timers too high? I'm specifically thinking that by setting these timers to a large value, that it might be possible to cause out of control consumption of resources or exhaustion of TCP port numbers....

2) Perhaps setting some of these values should require a privilege?

3) Ultimately, have the implications of these changes been reviewed from a security standpoint?

    - Garrett


_______________________________________________
opensolaris-arc mailing list
[email protected]

Reply via email to