[160112] in North American Network Operators' Group
Re: box against dos/ddos
daemon@ATHENA.MIT.EDU (Kenneth McRae)
Thu Jan 31 12:30:53 2013
In-Reply-To: <CAArzuothA4pXkvYADozF6L5sPVCMj6HATykyo8bVV0iUSO3Cgg@mail.gmail.com>
Date: Thu, 31 Jan 2013 09:30:37 -0800
From: Kenneth McRae <kenneth.mcrae@dreamhost.com>
To: Suresh Ramasubramanian <ops.lists@gmail.com>
Cc: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
2nd the Peakflow recommendation.
On Thu, Jan 31, 2013 at 7:23 AM, Suresh Ramasubramanian <ops.lists@gmail.com
> wrote:
> arbor peakflow to start with?
>
> On Thursday, January 31, 2013, Piotr wrote:
>
> > Hi,
> >
> > I looking some box (vendor, model), which i can put out of the
> > main/product network, which can analyze packets netflow,sflow,syslog
> from
> > bgp router(s) and after discover some anomaly it can do some action, for
> > example:
> >
> > - Box have bgp session with bgp router and advertise attacked ip prefix
> > with some community. Bgp router set next-hop for this prefix to /dev/null
> >
> > Normal traffic via bgp router is about 1G/s in and 10G/s out
> >
> > What is worth of looking and what you suggest ?
> >
> > thanks for help,
> > Piotr
> >
> >
>
> --
> --srs (iPad)
>
--
Best Regards,
Kenneth McRae
*Director, Network Operations*
kenneth.mcrae@dreamhost.com
Ph: 818-447-2589
www.dreamhost.com