Re: [suse-security] possible source for DOS ?

Yes, there are: build a new kernel and set 'CPU is to slow to handle full network bandwith' to yes this slows down your client, but makes this error disapear. The error is a known isue with fast nfs servers: the server pushes out nfs packets faster than the client is able processing them. After some time there maybe a buffer overrun at the clients side. Some packets get lost. The client requests resending them. Again they arrive to fast to be processed... Since the knfsd *is* faster than the user space nfsd it's more likely appearing with knfsd. There are two solutions: 1st chance is to slow down your server. Starting ntop does it temporarily or 2nd make shure no more packets arrive as your client is able to process. You do it changing the mentioned kernel flag. Than building a new kernel for your client. Thomas
participants (1)
-
tschweikle@FIDUCIA.de