[27228] in North American Network Operators' Group
Re: Yahoo! Lessons Learned
daemon@ATHENA.MIT.EDU (Vadim Antonov)
Thu Feb 10 04:22:43 2000
Date: Thu, 10 Feb 2000 01:20:57 -0800
From: Vadim Antonov <avg@kotovnik.com>
Message-Id: <200002100920.BAA10909@kitty.kotovnik.com>
To: nanog@merit.edu
Errors-To: owner-nanog-outgoing@merit.edu
Just a thought - strict RPF at all ingress points,
in combination with Fair Queueing keyed on something
like 24 high-order bits of source IP address in
transit routers would render any high-rate flooding
attack pretty much harmless.
--vadim