[122947] in North American Network Operators' Group
Re: Security Guideance
daemon@ATHENA.MIT.EDU (Nate Itkin)
Tue Feb 23 16:27:49 2010
Date: Tue, 23 Feb 2010 11:27:21 -1000
From: Nate Itkin <nanog@konadogs.net>
To: nanog@nanog.org
In-Reply-To: <C0A98BB6DAFAAB46A78BBA2C51B98F3EF94ABC@nexus.nexicomgroup.net>
Reply-To: nanog@konadogs.net
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
On Tue, Feb 23, 2010 at 02:46:54PM -0500, Paul Stewart wrote:
> The problem is that a user on this box appears to be launching high
> traffic DOS attacks from it towards other sites.
It's possible the user inadvertently enabled the same exploit after you
rebuilt the system. I suggest caution with assigning culpability.
Nate Itkin