net.ipv4.conf.all.secure_redirects =0
When enabled, this would allow redirects from local routers. It's disbaled for
the same reasons as the above, malicious hosts could lie about the source address
for the redirect.
Monday, March 16, 2009
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment