... endpoints of the connection, which then close. However, be-cause the original packets are passed through the firewall unscathed, if the endpoints completely ignore the firewall’s resets, then the connectionwill ... demonstratethat the traffic had been, say, pornography rather than political speech. In the case where the firewall is breached by discarding resets, the content will beavailable to the firewall in the clear, ... validation of the sequence numbersof reset packets. Validating the TTL value in the reset packet to ensure that itis similar to the TTL value seen for the rest of the connection would improve the chances...