[157290] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Attacking on Source Port 0 (ZERO)

daemon@ATHENA.MIT.EDU (Nick Hilliard)
Sun Oct 14 16:58:19 2012

X-Envelope-To: nanog@nanog.org
Date: Sun, 14 Oct 2012 21:57:53 +0100
From: Nick Hilliard <nick@foobar.org>
To: Shahab Vahabzadeh <sh.vahabzadeh@gmail.com>
In-Reply-To: <CAGqGmqZEaFpSvFUHYW2qy1SDS7oFnGqnHQ8WtYeQrDgdxonLQA@mail.gmail.com>
Cc: NANOG list <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On 14/10/2012 20:59, Shahab Vahabzadeh wrote:
> But I see abnormal cpu usage (%99) in my BRAS's which are Cisco 7206 VXR.

If you haven't already configured CoPP on your BRASs, you might want to
look at deploying it.  It won't solve this sort of problem, but it will
probably help:

> http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6586/ps6642/prod_white_paper0900aecd804fa16a.html

There are many other configuration examples and documentation pages on the
web, but this one gives a good overview.

Nick



home help back first fref pref prev next nref lref last post