no, i said it makes no sense

the kernel itself has the capabilities for syncookies
and there is zero reason to bother the application
layer with this, that is the same as ratecontrols
belong in the iptables-layer and not in the attacked

* put "net.ipv4.tcp_syncookies = 1" in your sysctl.conf
* type "sysctl -p"

