[167558] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: ddos attacks

daemon@ATHENA.MIT.EDU (Jon Lewis)
Wed Dec 18 20:08:39 2013

Date: Wed, 18 Dec 2013 20:03:59 -0500 (EST)
From: Jon Lewis <jlewis@lewis.org>
To: Valdis.Kletnieks@vt.edu
In-Reply-To: <48604.1387414585@turing-police.cc.vt.edu>
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On Wed, 18 Dec 2013 Valdis.Kletnieks@vt.edu wrote:

> On Wed, 18 Dec 2013 15:12:28 -0800, "cb.list6" said:
>
>> I am strongly considering having my upstreams to simply rate limit ipv4
>> UDP. It is the simplest solution that is proactive.
>
> What are the prospects for ipv6 UDP not suffering the same fate?

Roughly 0%, but there's so little v6 traffic compared to v4, you probably 
don't have to worry about v6 attack traffic yet...particularly if you're 
not dual stack yet.  :)

----------------------------------------------------------------------
  Jon Lewis, MCP :)           |  I route
                              |  therefore you are
_________ http://www.lewis.org/~jlewis/pgp for PGP public key_________


home help back first fref pref prev next nref lref last post