Defending against SYN Flood Attack by Netfilter/iptables
Zhou Jie-sheng · Journal of Nanjing University of Posts and Telecommunications · 2007
The SYN Flood attack is the most popular DOS/DDOS attack method.In this paper,the detection and protection of the SYN Flood attack in Linux are introduced firstmy.The principle that defends the SYN Flood attack based on the Netfilter/iptables dynamic packet filter mechanism is analyzed and then a solution integrated with iptables and Intrusion Detection System(IDS) is proposed.Documents are chosen as the carrier of data transmission in this solution which is programmed in shell script.The experiment results show that this solution can defend the SYN Flood attack effectively.