[187558] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

RE: UDP Amplification DDoS - Help!

daemon@ATHENA.MIT.EDU (Peter Kranz)
Mon Feb 8 22:13:08 2016

X-Original-To: nanog@nanog.org
From: "Peter Kranz" <pkranz@unwiredltd.com>
To: "'Mitch Dyer'" <mdyer@development-group.net>,
	<nanog@nanog.org>
In-Reply-To: <10e6b56b34b74f7a86cc7117555de973@AWS-EX01.devgru.local>
Date: Mon, 8 Feb 2016 19:10:31 -0800
Errors-To: nanog-bounces@nanog.org

You haven't indicated what the actual inbound attack volume is. If it's
something your network core can handle, you can block the attack fingerprint
upstream so it does not reach the 1Gb link. If it's UDP amplification
chances are you can create a firewall rule.

-PK


home help back first fref pref prev next nref lref last post