Our tests on different traces demonstrate that our technique
can control TCP connection time–outs more tightly and reduce
the effects of the SYN flooding attack.
Note also that one could imagine from figure 3 that simply
fixing a time–out value of 1s—or tighter—could be sufficient,
yet our evaluation shows that the number of connection in the
backlog is better controlled with our technique, with a better
accuracy in the calculated time–out