nanog mailing list archives
Re: Why won't providers source-filter attacks? Simple.
From: Octavio Alvarez <alvarezp () alvarezp ods org>
Date: Tue, 04 Feb 2014 12:55:38 -0800
On 04/02/14 11:35, Jay Ashworth wrote:
It *is in their commercial best interest (read: maximizing shareholder value) *NOT* to filter out DOS, DDOS, and spam traffic until their hand is forced -- it's actually their fiduciary duty not to.
That's short-sighted, but I agree in that that's what happens. Not filtering doesn't prevent them to operate.
*THIS* is the problem we have to fix.
Source-based routing when going back to the backbone, at least on IPv6. It allows end-user multihoming with no BGP, and routers could be programmed to, by default, drop packages that don't know how to source-route, hence, automatically source filtering for those that don't care enough.
Difficult to do. Will take years to develop and adopt... if at all.
Current thread:
- Re: BCP38 [Was: Re: TWC (AS11351) blocking all NTP?], (continued)
- Re: BCP38 [Was: Re: TWC (AS11351) blocking all NTP?] Jay Ashworth (Feb 03)
- Re: BCP38 [Was: Re: TWC (AS11351) blocking all NTP?] jamie rishaw (Feb 06)
- Re: TWC (AS11351) blocking all NTP? William Herrin (Feb 04)
- Re: TWC (AS11351) blocking all NTP? Jared Mauch (Feb 04)
- Re: TWC (AS11351) blocking all NTP? William Herrin (Feb 04)
- Re: TWC (AS11351) blocking all NTP? Jared Mauch (Feb 04)
- BCP38 [Was: Re: TWC (AS11351) blocking all NTP?] Paul Ferguson (Feb 04)
- Re: BCP38 [Was: Re: TWC (AS11351) blocking all NTP?] Valdis . Kletnieks (Feb 04)
- Re: BCP38 [Was: Re: TWC (AS11351) blocking all NTP?] Paul Ferguson (Feb 04)
- Why won't providers source-filter attacks? Simple. Jay Ashworth (Feb 04)
- Re: Why won't providers source-filter attacks? Simple. Octavio Alvarez (Feb 04)
- Re: Why won't providers source-filter attacks? Simple. Mark Andrews (Feb 04)
- Re: Why won't providers source-filter attacks? Simple. Randy Bush (Feb 04)
- Re: Why won't providers source-filter attacks? Simple. Peter Kristolaitis (Feb 04)
- Re: Why won't providers source-filter attacks? Simple. Mark Andrews (Feb 04)
- Re: Why won't providers source-filter attacks? Simple. Randy Bush (Feb 04)
- Re: Why won't providers source-filter attacks? Simple. Valdis . Kletnieks (Feb 04)
- Re: Why won't providers source-filter attacks? Simple. Jimmy Hess (Feb 04)
- BCP38 (was: Re: Why won't providers source-filter attacks? Simple.) John Curran (Feb 07)
- Re: BCP38 (was: Re: Why won't providers source-filter attacks? Simple.) Dobbins, Roland (Feb 07)
- Re: BCP38 (was: Re: Why won't providers source-filter attacks? Simple.) Chris Grundemann (Feb 07)