[167558] in North American Network Operators' Group
Re: ddos attacks
daemon@ATHENA.MIT.EDU (Jon Lewis)
Wed Dec 18 20:08:39 2013
Date: Wed, 18 Dec 2013 20:03:59 -0500 (EST)
From: Jon Lewis <jlewis@lewis.org>
To: Valdis.Kletnieks@vt.edu
In-Reply-To: <48604.1387414585@turing-police.cc.vt.edu>
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
On Wed, 18 Dec 2013 Valdis.Kletnieks@vt.edu wrote:
> On Wed, 18 Dec 2013 15:12:28 -0800, "cb.list6" said:
>
>> I am strongly considering having my upstreams to simply rate limit ipv4
>> UDP. It is the simplest solution that is proactive.
>
> What are the prospects for ipv6 UDP not suffering the same fate?
Roughly 0%, but there's so little v6 traffic compared to v4, you probably
don't have to worry about v6 attack traffic yet...particularly if you're
not dual stack yet. :)
----------------------------------------------------------------------
Jon Lewis, MCP :) | I route
| therefore you are
_________ http://www.lewis.org/~jlewis/pgp for PGP public key_________