Marc Sandmeier - 2013-08-21

Hello,
you dont't seem to use the netcat version of sourceforge, but this netcat doesn't use option -k. I doen’t believe, that a limit for incoming bytes, would prevent a DDOS attack. In the case of a DDOS the attacker doesn’t make the full handshake. As an example I refer to the syn-flood attack. These half-open connect uses resources in tcp/ip, so that many of that drive crazy the system. If the service behind the port would realize such a situation, netcat must react by waiting a time. But I’m not the specialist of tcp/ip, so that I doen’t know, if a service would realize the DDOS.

Best Regards
Marc