nanog mailing list archives
Re: ICMP Attacks???????
From: "Alex \"Mr. Worf\" Yuriev" <alex () netaxs com>
Date: Thu, 21 Aug 1997 21:39:44 -0400 (EDT)
Short of fixing every network on the internet, does anyone have any useful advice for what to do when smurfed? This happened to an FDT customer last night, and it had our T1 (according to uunet) at about 500% capacity. Obviously, until the attack stopped, our T1 wasn't too useful. I'm about< close to just asking uunet to block all icmp echo replies from cominginto FDT...but I know customers will complain.
Then they will start blasting UDP at you. Trust me, T1 is not that bad. We periodically have DS-3s eaten up completely but it happens for such a short time that it cannot really be traced :( Alex
Current thread:
- Re: ICMP Attacks???????, (continued)
- Message not available
- Re: ICMP Attacks??????? Jay R. Ashworth (Aug 22)
- Re: ICMP Attacks??????? Josh Beck (Aug 21)
- Blocking spoofing at the source (was: ICMP Attacks??) Joe Rhett (Aug 22)
- Re: Blocking spoofing at the source (was: ICMP Attacks??) Josh Beck (Aug 22)
- Message not available
- Re: Blocking spoofing at the source (was: ICMP Attacks??) Jay R. Ashworth (Aug 22)
- Re: Blocking spoofing at the source (was: ICMP Attacks??) Robert Sanders (Aug 29)
- Re: Blocking spoofing at the source (was: ICMP Attacks??) Phil Howard (Aug 22)
- Re: Blocking spoofing at the source (was: ICMP Attacks??) Robert Sanders (Aug 29)
- Re: ICMP Attacks??????? Peter E. Giza (Aug 21)
- Re: ICMP Attacks??????? Jon Lewis (Aug 21)
- Re: ICMP Attacks??????? Alex "Mr. Worf" Yuriev (Aug 21)
- Re: ICMP Attacks??????? Jon Lewis (Aug 21)
- Re: ICMP Attacks??????? Edward Henigin (Aug 21)
- Re: ICMP Attacks??????? Alex Przekupowski (Aug 22)
- Message not available
- Re: ICMP Attacks??????? Jay R. Ashworth (Aug 22)
- Message not available
- Re: ICMP Attacks??????? Jay R. Ashworth (Aug 26)