nanog mailing list archives

Re: Counter DoS


From: Petri Helenius <pete () he iki fi>
Date: Thu, 11 Mar 2004 23:59:34 +0200


Deepak Jain wrote:



If you wanted to do that, wouldn't the firewall just need directed-broadcast left open or emulate similar behavior, or even turning ip unreachables back on?

Flooding pipes accidentally is easy enough. Now people are selling products to do it deliberately.

Maybe there is a lesson to be learned from many RBL operators. To make sure, just send packets to the whole /24 or /16 you got an "attack" packet from.

Pete



Current thread: