nanog mailing list archives
Re: Syn flood to TCP port 21 from priveleged port (80)
From: Ken Chase <math () sizone org>
Date: Tue, 1 Nov 2016 19:59:24 -0400
Most of those networks are served by Prolexic DDOS mitigation (AS 32787), and according to BGPlay have been for a while. (AS carrying untoward material, like a Tor exit node or onion router?) But a couple /24s in the 95.* block are AS14537 Mohawk Internet Tech. in Quebec Canada such as 95.131.188.0/24 - unintended target? (careful who you buy /24's from!) So the only target being affected would be Mohawk unless they're setup to handle it. /kc -- Ken Chase - math () sizone org Guelph Canada
Current thread:
- Re: Syn flood to TCP port 21 from priveleged port (80), (continued)
- Message not available
- Re: Syn flood to TCP port 21 from priveleged port (80) Oleg A . Arkhangelsky (Nov 01)
- Re: Syn flood to TCP port 21 from priveleged port (80) Ken Chase (Nov 01)
- RE: Syn flood to TCP port 21 from priveleged port (80) Emille Blanc (Nov 01)
- Re: Syn flood to TCP port 21 from priveleged port (80) Selphie Keller (Nov 01)
- RE: Syn flood to TCP port 21 from priveleged port (80) Emille Blanc (Nov 01)
- Re: Syn flood to TCP port 21 from priveleged port (80) Selphie Keller (Nov 01)
- Re: Syn flood to TCP port 21 from priveleged port (80) Van Dyk, Donovan (Nov 01)
- Re: Syn flood to TCP port 21 from priveleged port (80) Ken Chase (Nov 01)
- Re: Syn flood to TCP port 21 from priveleged port (80) Selphie Keller (Nov 01)
- Re: Syn flood to TCP port 21 from priveleged port (80) Ken Chase (Nov 01)
- Re: Syn flood to TCP port 21 from priveleged port (80) Ken Chase (Nov 01)
- Re: Syn flood to TCP port 21 from priveleged port (80) Christian Kildau (Nov 02)
- Re: Syn flood to TCP port 21 from priveleged port (80) Theodore Baschak (Nov 02)