DENIAL OF SERVICE MEETING March 3, 1999
9-10am
3085 ENG II
In attendance:
Matt Bishop (MB) and John Hughes (JH)
TOPICS
Simson Garfinkle's Unix attack
John Hughes' report
Fail safe defaults
Isonet News
Short meeting due to lack of attendance.
Simson Garfinkle's Unix attack
MB: Simson Garfinkle reported a "new" Unix attack in which enough TCP/IP
connections are opened all the way to any port that they fill up the process
table and bring down the system. NT servers are supposedly not affected,
because it isn't possible to open too many connections or this information
is wrong and there is a vulnerability.
JH: This attack really isn't new.
MB: They're saying that the Internet should be run through Windows NT.
People who run ISP believe the information about NT servers not being affected.
John Hughes' report
MB: The report length needs to be as long as it needs to be.
Fail safe defaults
MB: Nick Puketza was going to do a simulation, but Matt needs to write
up the full hypothesis and experiment
Isonet News
The Linux box has arrived and will be used for the firewall of the Isolated
Network. Tom Tang will be setting it up.