[103266] in North American Network Operators' Group
Re: Mitigating HTTP DDoS attacks?
daemon@ATHENA.MIT.EDU (Roland Dobbins)
Mon Mar 24 19:29:42 2008
From: Roland Dobbins <rdobbins@cisco.com>
To: NANOG <nanog@merit.edu>
In-Reply-To: <14b99b330803241618s4eb332d3s5809535aabac87d7@mail.gmail.com>
Date: Tue, 25 Mar 2008 06:27:47 +0700
Errors-To: owner-nanog@merit.edu
On Mar 25, 2008, at 6:18 AM, Tim Yocum wrote:
> If you're running Apache, you may also investigate mod_evasive, and in
> the case of exploits, mod_security.
mod_evasive and mod_security are definitely recommended, good point.
And a good relationship with your peers/upstreams/customers/vendors is
also key, so that you can get assistance when you need it.
-----------------------------------------------------------------------
Roland Dobbins <rdobbins@cisco.com> // +66.83.266.6344 mobile
It doesn't pay to dispute what you know to be true.
-- Fred Reed