Does SCTP help against TCP reset attacks?

Ángel González keisial at gmail.com
Fri Apr 15 09:58:20 AEST 2016


Steffen Nurpmeso wrote:
>    I don't know how you do it, i never managed a(n exposed) server
>    until January and now [.] i think what i have to face are TCP
>    RST attacks on SSH connections, leading to "connection reset"s
>    ["connection closed" on client side in fact] (of course).
Are you sure that's the case? For RST attack, it would need to guess
the right TCP sequence numbers.
It seems more likely that the connection is timing out (maybe there's
some firewall enforcing it?) and thus the other side considers it to be
closed.



More information about the openssh-unix-dev mailing list