[149610] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: UDP port 80 DDoS attack

daemon@ATHENA.MIT.EDU (Steve Bertrand)
Thu Feb 9 19:31:57 2012

Date: Wed, 08 Feb 2012 18:49:43 -0500
From: Steve Bertrand <steve.bertrand@gmail.com>
To: Drew Weaver <drew.weaver@thenap.com>
In-Reply-To: <F3318834F1F89D46857972DD4B411D70052CA02411@exchange>
Cc: nanog <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On 2012.02.08 14:23, Drew Weaver wrote:
> Stop paying transit providers for delivering spoofed packets to the edge of your network and they will very quickly develop methods of proving that the traffic isn't spoofed, or block it altogether. =)

I firmly believe in this recourse, amongst others...

If you know that your provider allows spoofed traffic, let the community 
know about it.

In all aspects of life, a problem must be 'fixed' at the source. All of 
the small-medium size ops have to connect to the big-boys somewhere, and 
what I've seen in this industry is that the big-boys are generally 
compliant.

Steve


home help back first fref pref prev next nref lref last post