nanog mailing list archives

Re: Yahoo! Lessons Learned


From: Dan Hollis <goemon () sasami anime net>
Date: Wed, 9 Feb 2000 02:56:51 -0800 (PST)


On Tue, 8 Feb 2000, Vadim Antonov wrote:
The DoS prevention functions (not letting directed bcast in, and not letting
forged addresses out) should be done at provider's side.

Unfortunately I suspect its going to take some high profile lawsuits
before this gets widely enough deployed by providers to be effective.

There just isnt the financial incentive for providers to be bothered with
it, so its going to have to end up being a legal liability if they dont,
before they will take action.

Really, I think things like RPF and other *basic* filters should be a
contractual requirement before allowing customers to connect to the
network. Hell, im thinking Cisco and others should make it a *default*. ;)

-Dan




Current thread: