nanog mailing list archives

Re: DNS - connection limit (without any extra hardware)


From: Gadi Evron <ge () linuxbox org>
Date: Sun, 10 Dec 2006 13:52:46 -0600 (CST)


On Sun, 10 Dec 2006, Hank Nussbacher wrote:

On Sun, 10 Dec 2006, Petri Helenius wrote:

Virtual patching.

How do I virtual patch the machine in ireland which attacked my mail server 
just a few minutes ago?

You don't patch the machine in Ireland, but once your "virtual patching 
box" identifies a hostile system and identifies what it is infected with, 
it can then do the virtual patching on your end so that all subsequent 
pkts entering from that machine in Ireland are cleaned and no longer 
hostile.

I don't follow. Three monkies? Hitchhiker's Guide towel?

        Gadi.

-Hank



Current thread: