diff options
author | Shauren <shauren.trinity@gmail.com> | 2013-10-07 14:30:37 +0200 |
---|---|---|
committer | Shauren <shauren.trinity@gmail.com> | 2013-10-07 14:30:37 +0200 |
commit | fca4a5448ac476b942c330108a76032ae242711e (patch) | |
tree | 81fe500a02353fa5079532fe53c21a4f3a269b82 /src/server/authserver/Server/AuthSocket.cpp | |
parent | 1b56bd1b6a860c325f3e4e76d94dc367429fbb16 (diff) | |
parent | c8f525c76e162b5b546c91628a1457f9aef43699 (diff) |
Merge branch 'master' of github.com:TrinityCore/TrinityCore into 4.3.4
Diffstat (limited to 'src/server/authserver/Server/AuthSocket.cpp')
-rw-r--r-- | src/server/authserver/Server/AuthSocket.cpp | 13 |
1 files changed, 13 insertions, 0 deletions
diff --git a/src/server/authserver/Server/AuthSocket.cpp b/src/server/authserver/Server/AuthSocket.cpp index 1ab9ae6eb62..4a9d3ce7faf 100644 --- a/src/server/authserver/Server/AuthSocket.cpp +++ b/src/server/authserver/Server/AuthSocket.cpp @@ -222,12 +222,25 @@ void AuthSocket::OnClose(void) // Read the packet from the client void AuthSocket::OnRead() { + #define MAX_AUTH_LOGON_CHALLENGES_IN_A_ROW 3 + uint32 challengesInARow = 0; uint8 _cmd; while (1) { if (!socket().recv_soft((char *)&_cmd, 1)) return; + if (_cmd == AUTH_LOGON_CHALLENGE) + { + ++challengesInARow; + if (challengesInARow == MAX_AUTH_LOGON_CHALLENGES_IN_A_ROW) + { + TC_LOG_WARN(LOG_FILTER_AUTHSERVER, "Got %u AUTH_LOGON_CHALLENGE in a row from '%s', possible ongoing DoS", challengesInARow, socket().getRemoteAddress().c_str()); + socket().shutdown(); + return; + } + } + size_t i; // Circle through known commands and call the correct command handler |