Page MenuHomeFreeBSD

icmp6: bring rate limiting on a par with IPv4
ClosedPublic

Authored by glebius on Mar 22 2024, 9:49 PM.
Tags
None
Referenced Files
F156329498: D44482.diff
Tue, May 12, 3:22 PM
F156329427: D44482.diff
Tue, May 12, 3:21 PM
Unknown Object (File)
Wed, Apr 29, 11:25 AM
Unknown Object (File)
Wed, Apr 29, 11:16 AM
Unknown Object (File)
Wed, Apr 29, 2:02 AM
Unknown Object (File)
Wed, Apr 29, 2:00 AM
Unknown Object (File)
Wed, Apr 22, 7:26 PM
Unknown Object (File)
Mar 17 2026, 8:31 AM

Details

Summary

Use counter_ratecheck() instead of racy and slow ppsratecheck. Use a
separate counter for every currently known type of ICMPv6. Provide logging
of ratelimit events. Provide jitter to counter open UDP port detection.

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

This revision is now accepted and ready to land.Mar 23 2024, 2:23 PM
zlei added a subscriber: zlei.

Looks good to me.