A blind attack occurs when a client is sending a client IP address
different from its own to the server. The server returns the cookie to
the invalid client IP address instead of the attacking client. The invalid
client will drop the message instead of returning a COOKIE ECHO
message. Since the server never receives a COOKIE ECHO message,
memory and resources are not allocated and overload is avoided.
Security View
Architecture
....................................................................................................................................................................................................................................
235-200-118
Issue 3.02B, March 2007
Lucent Technologies
2-37