[120811] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: D/DoS mitigation hardware/software needed.

daemon@ATHENA.MIT.EDU (Dobbins, Roland)
Mon Jan 4 23:23:39 2010

From: "Dobbins, Roland" <rdobbins@arbor.net>
To: NANOG list <nanog@nanog.org>
Date: Tue, 5 Jan 2010 04:20:51 +0000
In-Reply-To: <16720fe01001042005i23f0360en6bd5740f6b90beec@mail.gmail.com>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org


On Jan 5, 2010, at 11:05 AM, Jeffrey Lyon wrote:

> I'm sure Arbor is really neat but I disagree that any DDoS appliance is a=
 standalone solution.

I disagree with this proposition, too.

S/RTBH and/or flow-spec are great DDoS mitigation tools which don't require=
 any further investment beyond the network infrastructure an operator has a=
lready purchased and deployed.  These should be the first mitigation tools =
anyone deploys; in many cases, they're all that's needed.

> I don't expect an employee of the vendor themselves to attest to this tho=
ugh.

Wrong again.

;>

-----------------------------------------------------------------------
Roland Dobbins <rdobbins@arbor.net> // <http://www.arbornetworks.com>

    Injustice is relatively easy to bear; what stings is justice.

                        -- H.L. Mencken





home help back first fref pref prev next nref lref last post