RFC 2827 (rfc2827) - Page 3 of 10
Network Ingress Filtering: Defeating Denial of Service Attacks which employ IP Source Address Spoofing
Alternative Format: Original Text Document
RFC 2827 Network Ingress Filtering May 2000 2. Background A simplified diagram of the TCP SYN flooding problem is depicted below: 204.69.207.0/24 host



