🪟 Windows TippsThe Gemini desktop app is now available for Windows(11.09.2026 um 17:06 Uhr)
🪟 Windows TippsHeader and Footer not showing in Excel(14.09.2026 um 22:43 Uhr)
🕵️ SicherheitslückenBurn Out, Or Fade Away(14.09.2026 um 14:25 Uhr)
🪟 Windows TippsKB5129194 Windows 11 26H1 Out of Band Update - Deskmodder.de(14.09.2026 um 19:25 Uhr)
🪟 Windows TippsThe Gemini desktop app is now available for Windows(11.09.2026 um 17:06 Uhr)
🪟 Windows TippsHeader and Footer not showing in Excel(14.09.2026 um 22:43 Uhr)
🕵️ SicherheitslückenBurn Out, Or Fade Away(14.09.2026 um 14:25 Uhr)
🪟 Windows TippsKB5129194 Windows 11 26H1 Out of Band Update - Deskmodder.de(14.09.2026 um 19:25 Uhr)
1 Tag Serie
🐧 Linux Tipps 🕛 vor 5 Jahren 2 Min Lesezeit
0

Forcing RST sending hack

↗ Quelle (reddit.com)
🗣️ Stimme:

Hi,

Some developers are running app instances in Azure cloud, and Microsoft has decided 128 connections ought to be enough for everybody. i.e. SNAT allows 128 outgoing connections to same host/port combo.

To really piss people off, they have decided that it takes 240 seconds aka 4 minutes to clear an entry in the SNAT table, and allow a new connection. So basically we can open one new connection every 2 seconds !!!!! They suggest to use connection pooling / reuse. But we talk to multiple names on the same IP so would have to have a pretty low limit per name to ensure sum of all connections stays below the limit. Say 4 names = 128/4 = 32 connections per name. But we need to go lower due to the 2 minute timeouts. nginx on receiving end recycles after 100 requests. So even setting it to max 1 connection per name might exhaust the 128 on a busy day.

Now, if the Microsoft firewall receives a RST, then the connection is released 15 seconds later. So we can have the same app instance handle 16 times more connections.

Now to the Linux part:

Since I am an old school hacker, my idea was to replace any outgoing FIN packets towards the Microsoft IPs with RST. That should be doable with packet mangling (?)

It is too dirty, and not compliant, but are there other better solutions ? Say wait for the connection to go in TIME_WAIT / FIN_WAIT then wait 5 seconds (to allow for oacket loss/ retransmit) and then send reset ? I would need to have SEQ numbers of last packet I guess.

Another solution would be running pcap/tcpdump, finding the FIN packets towards the Microsoft IPs, wait 5 secs, and then send reset. The pcap will have the SEQ numbers right.

The right solution would be to move a pure Linux server rather than the app server stuff, then I would have 63k connections to use, and I could set the tcp_fin_timeout to to 10 seconds rather than the 240 seconds.

On top of all this, we now have 4 IP addresses to the backend server, but are still discussing best DNS setup for DNS round robin.

Really hate arbitrary limits, especially if they are ultra-low like here. Fanning out horizontal (more app instances) scales linear, which is why we would rather put a multiplier on somewhere.

submitted by [comments]
Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf reddit.com.
↗ Original-Artikel auf reddit.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 0%
🟡 In Evaluierung 0%
🟢 Keine Auswirkung 0%
Spannende Innovation 0%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
The Gemini desktop app is now available for Windows
1 Quelle
Header and Footer not showing in Excel
1 Quelle
Burn Out, Or Fade Away
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten Forcing RST sending hack

Thematisch verwandte Begriffe: Forcing, sending, hack · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...