[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-Id: <20120927.191200.1483743406607177228.davem@davemloft.net>
Date: Thu, 27 Sep 2012 19:12:00 -0400 (EDT)
From: David Miller <davem@...emloft.net>
To: shemminger@...tta.com
Cc: jesse@...ira.com, chrisw@...hat.com, netdev@...r.kernel.org
Subject: Re: [PATCHv5 net-next] vxlan: virtual extensible lan
From: Stephen Hemminger <shemminger@...tta.com>
Date: Thu, 27 Sep 2012 16:00:54 -0700
> On Thu, 27 Sep 2012 18:47:40 -0400 (EDT)
> David Miller <davem@...emloft.net> wrote:
>
>> But I wonder if this matters at all, the administrator controls
>> the contents of this table, rather than external entitites.
>
> The table includes values learned from packets received. Like a bridge,
> a malicious attacker who can forge MAC sourc addresses can overload one
> chain by swamping the table with bogus values. Probably needs a table limit.
Ok.
--
To unsubscribe from this list: send the line "unsubscribe netdev" in
the body of a message to majordomo@...r.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Powered by blists - more mailing lists