[157305] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Attacking on Source Port 0 (ZERO)

daemon@ATHENA.MIT.EDU (Dobbins, Roland)
Sun Oct 14 22:05:19 2012

From: "Dobbins, Roland" <rdobbins@arbor.net>
To: NANOG list <nanog@nanog.org>
Date: Mon, 15 Oct 2012 02:04:12 +0000
In-Reply-To: <507B2751.6010004@foobar.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org


On Oct 15, 2012, at 3:57 AM, Nick Hilliard wrote:

> If you haven't already configured CoPP on your BRASs, you might want to l=
ook at deploying it.

CoPP is pretty much a wash on software-based boxes; it only really helps on=
 hardware-based boxes.  And iACLs is easier/a bigger win, anyways (though a=
nyone using software-based boxes on the Internet in 2012 is just waiting to=
 be zorched).

-----------------------------------------------------------------------
Roland Dobbins <rdobbins@arbor.net> // <http://www.arbornetworks.com>

	  Luck is the residue of opportunity and design.

		       -- John Milton



home help back first fref pref prev next nref lref last post