[175919] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Reporting DDOS reflection attacks

daemon@ATHENA.MIT.EDU (Roland Dobbins)
Sat Nov 8 05:14:24 2014

X-Original-To: nanog@nanog.org
From: "Roland Dobbins" <rdobbins@arbor.net>
To: nanog@nanog.org
Date: Sat, 08 Nov 2014 17:14:02 +0700
In-Reply-To: <CACrsH-553kDSuKYnte=apYh8Sw4EGj3rh3+0dtJrA18SW0ijkw@mail.gmail.com>
Errors-To: nanog-bounces@nanog.org


On 8 Nov 2014, at 17:09, McDonald Richards wrote:

> Any failure or success stories you can share?

In my experience, it's the generally broadband access operators who will 
sometimes respond, when contacted about reflection/amplification attacks 
leveraging misconfigured, abusable CPE.

Generally speaking, networks running misconfigured, abusable devices by 
definition aren't very actively managed - and so those operators don't 
often respond, unless one has personal contacts within the relevant 
group(s).

YMMV, of course.

-----------------------------------
Roland Dobbins <rdobbins@arbor.net>

home help back first fref pref prev next nref lref last post