nanog mailing list archives

Re: box against dos/ddos


From: Kenneth McRae <kenneth.mcrae () dreamhost com>
Date: Thu, 31 Jan 2013 09:30:37 -0800

2nd the Peakflow recommendation.

On Thu, Jan 31, 2013 at 7:23 AM, Suresh Ramasubramanian <ops.lists () gmail com
wrote:

arbor peakflow to start with?

On Thursday, January 31, 2013, Piotr wrote:

Hi,

I looking some box (vendor, model), which i can put out of the
main/product network,  which can analyze packets  netflow,sflow,syslog
from
bgp router(s) and after discover some anomaly it can do some action, for
example:

- Box have bgp session with bgp router and advertise attacked ip prefix
with some community. Bgp router set next-hop for this prefix to /dev/null

Normal traffic via bgp router is about 1G/s in and 10G/s out

What is worth of looking and what you suggest ?

thanks for help,
Piotr



--
--srs (iPad)




-- 
Best Regards,



Kenneth McRae
*Director, Network Operations*
kenneth.mcrae () dreamhost com
Ph: 818-447-2589
www.dreamhost.com


Current thread: