[140702] in North American Network Operators' Group
Re: blocking unwanted traffic from hitting gateway
daemon@ATHENA.MIT.EDU (Dobbins, Roland)
Wed May 18 08:55:11 2011
From: "Dobbins, Roland" <rdobbins@arbor.net>
To: NANOG list <nanog@nanog.org>
Date: Wed, 18 May 2011 12:54:13 +0000
In-Reply-To: <BANLkTikPQkcFNuajh3csxXyOkxNeHa_A3A@mail.gmail.com>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
On May 18, 2011, at 7:42 PM, Rogelio wrote:
> This solution would need to be tied into the authentication services so a=
uthenticated users hit the gateway.
So the attackers can just hammer the authentication subsystem and take it d=
own, instead?
;>
By going the 'authentication' route in the sense you mean it, you'll make i=
t even more trivially easy to DDoS the Web servers than is possible without=
such a system.
<http://www.mail-archive.com/nanog@nanog.org/msg17914.html>
-----------------------------------------------------------------------
Roland Dobbins <rdobbins@arbor.net> // <http://www.arbornetworks.com>
The basis of optimism is sheer terror.
-- Oscar Wilde