Re: Windows 2003 Server - Remote Socket Restrictions

Tech-Archive recommends: Fix windows errors by optimizing your registry



Even more twice of that , because TcpTimedWaitDelay reg key by default is 4
min ( twice of MSL which is 2 min )
Arkady

"Alexander Nickolov" <agnickolov@xxxxxxxx> wrote in message
news:OajbHrbzFHA.1168@xxxxxxxxxxxxxxxxxxxxxxx
> After re-reading your question, it seems you are trying to go
> against the TCP protocol on purpose (maybe I misread
> something?). Perhaps you were exploiting a hole in Win2K
> that was plugged in Win2K3? The latter did tighten security...
>
> BTW, the TIME_WAIT timeout is 2 minutes, not 2 seconds.
>
> --
> =====================================
> Alexander Nickolov
> Microsoft ex-MVP [VC], MCSD
> email: agnickolov@xxxxxxxx
> MVP VC FAQ: http://www.mvps.org/vcfaq
> =====================================
>
> "Joe" <Joe@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
> news:3A2CBD0E-2A7E-4E78-B2A9-E0DE9B9179DD@xxxxxxxxxxxxxxxx
>> Hello,
>>
>> We are porting our application from Windows 2000 Professional to Windows
>> 2003 Server. We are communicating with a remote device which makes a
>> client
>> connection to our server every second. Things work fine for weeks at a
>> time
>> on Windows 2000. On Windows 2003 Server, the remote device is no longer
>> able
>> to connect after a few minutes .
>>
>> Using Ethereal we have determined that the Windows 2003 Server system
>> does
>> not acknowledge connection attempts from the remote device when the
>> device
>> reuses a socket which is in the TIME WAIT state on the server.
>>
>> After reviewing the device's TCP/IP stack code we have found that it can
>> theoretically reuse the same client socket once the socket's TIME WAIT
>> period
>> of 2 seconds has expired.
>>
>> We are about to change the device's behaviour but we would still like to
>> confirm that this is the expected behaviour under Windows 2003 Server.
>>
>> So, our question is:
>> Has something changed in Windows 2003 server with regards to
>> acknowledging
>> connection attempt from client sockets which are currently in the time
>> wait
>> state on the server?
>>
>> Joe
>
>


.



Relevant Pages

  • SecurityFocus Microsoft Newsletter #154
    ... MICROSOFT VULNERABILITY SUMMARY ... ISS RealSecure Server Sensor SSL Denial Of Service Vulnerabi... ... Roger Wilco Remote Server Side Buffer Overrun Vulnerability ... available for Microsoft Windows operating systems. ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter #49
    ... Subject: SecurityFocus Microsoft Newsletter #49 ... Microsoft Windows NNTP Denial of Service Vulnerability ... Microsoft IIS SSI Buffer Overrun Privelege Elevation Vulnerability ... Microsoft ISA Server H.323 Memory Leak Denial of Service... ...
    (Focus-Microsoft)
  • ~~~~~~~~~~~~~~~ CANNOT FIND ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ... cannot find server or dns error ... windows cannot find null ... windows cannot find the network path ... cannot find internet explorer on computer ...
    (comp.protocols.snmp)
  • Questions Relating to Administering Windows 2000 Server
    ... installed the network client on the target computer. ... Sarah has been attempting to install Windows 2000 ... Server for two days. ... Sarah has checked the cables and hard drives. ...
    (microsoft.public.cert.exam.mcse)
  • pqv¼Ò¹ÚÇÑ ²Þ@mBGRx
    ... O-009¹Ù¢Ã MS Windows 2000 Datacenter Server -2¸¸¿ø ... Main Application (Borland C++ Builder 6 Enterprise Edition) ... Y-166¢Ã Sex Starved Sluts 1 (Divx) ...
    (FreeBSD-Security)