logoalt Hacker News

huhtenbergyesterday at 3:27 PM1 replyview on HN

> Plenty of setups block incoming SYN,!ACK packets

Even in the presence of a conntrack entry created by an earlier outbound SYN,!ACK ?

Got a source?


Replies

cpercivayesterday at 4:16 PM

I've seen plenty of firewall rulesets over the past 25 years which only consult state after doing some initial stateless inspection.

I don't have a convenient source though.

show 2 replies