TCP timestamps


#1

Hi,

i have on all Linux Hosts TCP timestamps (OID: 1.3.6.1.4.1.25623.1.0.80091) report.
net.ipv4.tcp_timestamps =0 is adjusted.

any ideas?

Regards Karsten


#2

In some cases an intermediate system like a Firewall / SIP Proxy or similar is answering to the TCP timestamp request causing this vulnerability report.