Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Tools To Test Your ISP For BitTorrent Shenanigans » Can we block the reset packets?
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Post a:
Post a:
AuthorAll Replies


MxxCon

join:1999-11-19
Brooklyn, NY
clubs:

reply to funchords
Re: Can we block the reset packets?

you know perfectly well if the far end crashed, it wouldn't generate RST. it wouldn't generate anything at all.
RST would be generated if far end decided to close the existing connection, which can be a valid request.
some bittorrent clients want to connect only to seeds, so the moment they see it's not a seed, they will abort such connection generating RST. blocking such packets will break your application


funchords
Hello
Premium,MVM
join:2001-03-11
Washington, DC
·Verizon Online DSL
·Skype


1 edit
said by MxxCon See Profile :

you know perfectly well
With respect, your unnecessary attitude toward others does not promote friendliness. You called the previous poster's idea idiotic and you're being condescending to me.

In this case, you misunderstand how RST works. These are just facts, nobody wins or loses on the strength of their debating skills. It is whatever it is. We both learn about it by being here.

said by MxxCon See Profile :

if the far end crashed, it wouldn't generate RST. it wouldn't generate anything at all.
Right, but when network devices crash, they often reboot. When they come back up with no memory of the pre-crash states, then start receiving TCP packets on a closed port, they send RST in response.

This specific example is explained in RFC 793, Figure 11 (either page 34 or 35).

said by MxxCon See Profile :

RST would be generated if far end decided to close the existing connection, which can be a valid request.
If the far end decided to end the existing connection, FIN should be sent, not RST.

Anything is possible (there's an older Microsoft webserver that sends RST to kill the FIN's TIME_WAIT interval), but these exceptions are rare and usually pointed out as mistaken implementations.

said by MxxCon See Profile :

some bittorrent clients want to connect only to seeds, so the moment they see it's not a seed, they will abort such connection generating RST. blocking such packets will break your application
As said above, FIN not RST, is what should be sent. FIN completes the connection gracefully. RST can cause the loss of sent-but-unacknowledged data.

You can see this using Wireshark.
--
Robb Topolski -= funchords.com =- Hillsboro, Oregon
HTTP is the new Bandwidth Hog...


Hehe

@ssa.gov

Well, looking at the RFC it seems like we should not receive a RST while the connection is in the ESTABLISHED STATE. So, maybe we can drop RST if ESTABLISHED?

Anyone know how to make iptables do that?

And I assume I am not 100% correct!
It just can't be that easy.


funchords
Hello
Premium,MVM
join:2001-03-11
Washington, DC
·Verizon Online DSL
·Skype

said by Hehe :

Well, looking at the RFC it seems like we should not receive a RST while the connection is in the ESTABLISHED STATE. So, maybe we can drop RST if ESTABLISHED?

Anyone know how to make iptables do that?

And I assume I am not 100% correct!
It just can't be that easy.
RFC 793, Figure 11 would happen with one end in the Established state, thinking it was in a full-open connection when it actually is only in a half-open connection due to the remote host's reboot.
--
Robb Topolski -= funchords.com =- Hillsboro, Oregon
HTTP is the new Bandwidth Hog...
Forums » Tools To Test Your ISP For BitTorrent Shenanigans


Friday, 04-Dec 13:18:02 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [163] Comcast Releasing Promised Usage Meter
· [144] Avast Antivirus Has Gone Mad
· [116] Comcast Makes NBC Universal Acquisition Official
· [104] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [99] Google Invades ISP, OpenDNS Turf With Google Public DNS
· [81] Latest Consumer Reports Survey Not Kind To AT&T
· [73] Sprint Defuses GPS Privacy Media Bomb
· [71] FCC Ponders Moving From PSTN To IP Voice
· [70] Baltimore To Ban Lazy Cable Installs
· [64] Broadband Killed The Game Console
Most people now reading
· False positive in Avast! or is it real? [Security]
· DNS options, what are YOU using? [TekSavvy]
· An Excellent Guide About Google Voice And Sip Sorcery [VOIP Tech Chat]
· [WotLK] Doing away w/ conquest? [World of Warcraft]
· IMG 1.7 (IMG Updates and Discussion) [Verizon FIOS TV]
· [ Classes] Warlock Thread [World of Warcraft]
· Windows 7 boot manager editing questions [Microsoft Help]
· Equal speeds ruling [Canadian Broadband]
· [Rant] Disrespect of PTO [Rants, Raves, and Praise]