Handling the situation of passing of fragment through filter

Reference no: EM1310473

1) One way to defeating tiny fragment attack against the ?rewalls includes en-forcing a minimum length of transport header which should be contained within the ?rst fragment of an IP packet. If ?rst fragment is rejected, all the susequent fragments can be rejected. Though, the nature of IP is such that fragments can arrive out of order. However, an intermediate fragment may pass through ?lter before initial fragment is rejected. Describe how this situation can be handled? Answer should to be of at least 300 words.

Reference no: EM1310473

