nanog mailing list archives

Re: DNS - connection limit (without any extra hardware)


From: Hank Nussbacher <hank () efes iucc ac il>
Date: Sun, 10 Dec 2006 21:45:57 +0200 (IST)


On Sun, 10 Dec 2006, Petri Helenius wrote:

Virtual patching.

How do I virtual patch the machine in ireland which attacked my mail server just a few minutes ago?

You don't patch the machine in Ireland, but once your "virtual patching box" identifies a hostile system and identifies what it is infected with, it can then do the virtual patching on your end so that all subsequent pkts entering from that machine in Ireland are cleaned and no longer hostile.

-Hank


Current thread: