[187768] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Thank you, Comcast.

daemon@ATHENA.MIT.EDU (Roland Dobbins)
Thu Feb 25 22:58:17 2016

X-Original-To: nanog@nanog.org
From: "Roland Dobbins" <rdobbins@arbor.net>
To: "NANOG list" <nanog@nanog.org>
Date: Fri, 26 Feb 2016 10:58:11 +0700
In-Reply-To: <CAJayEpEU9aNHBnf+dG0KMypZmp7rQx-Ycz321-zWXi5anGfrUQ@mail.gmail.com>
Errors-To: nanog-bounces@nanog.org

On 26 Feb 2016, at 10:52, Paras Jha wrote:

> You don't typically see DNS amplified floods coming from home ISPs.

Actually, it's quite common, as a lot of CPE have abusable DNS 
forwarders running on their public interfaces.

DNS, SSDP, and SNMP reflection/amplification quite commonly emanate from 
broadband access networks due to abusable CPE.  Others, as well, of 
course, but those are generally the most prevalent.

-----------------------------------
Roland Dobbins <rdobbins@arbor.net>

home help back first fref pref prev next nref lref last post