[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
UDP port 80 DDoS attack
- Subject: UDP port 80 DDoS attack
- From: rdobbins at arbor.net (Dobbins, Roland)
- Date: Mon, 6 Feb 2012 01:20:11 +0000
- In-reply-to: <CABO8Q6S=OiE-dbw-MstMe5tDwX4Sk+qJY=pHNkB0VWgQ=tQr=Q@mail.gmail.com>
- References: <7F48F1B1D2983A49AFC2A39FAC634039AE924E9CF1@miles-exch01.miles.office> <CABO8Q6TFRhXY-aLB4URW6e-iUu8Wd1z2RidOsUzr8+QrQkqmvw@mail.gmail.com> <[email protected]> <CABO8Q6S=OiE-dbw-MstMe5tDwX4Sk+qJY=pHNkB0VWgQ=tQr=Q@mail.gmail.com>
On Feb 6, 2012, at 8:10 AM, Keegan Holley wrote:
> An entire power point just to recommend ACL's, uRPF, CPP, DHCP snooping, and RTBH?
Actually, no, that isn't the focus of the preso.
> The first four will not work against a DDOS attack
This is incorrect - suggest you read the preso.
> and the last one just kills the patient so he does not infect other patients.
S/RTBH - as opposed to D/RTBH - doesn't kill the patient. Again, suggest you read the preso.
There's been a lot of discussion on this topic on NANOG, suggest you take a look through the archives.
-----------------------------------------------------------------------
Roland Dobbins <rdobbins at arbor.net> // <http://www.arbornetworks.com>
The basis of optimism is sheer terror.
-- Oscar Wilde