[27566] in North American Network Operators' Group
Re: DDOS Roadmap from SANS...
daemon@ATHENA.MIT.EDU (Valdis.Kletnieks@vt.edu)
Thu Feb 24 14:04:22 2000
Message-Id: <200002241858.e1OIwpc30908@black-ice.cc.vt.edu>
To: Paul Ferguson <ferguson@cisco.com>
Cc: nanog@merit.edu
In-reply-to: Your message of "Thu, 24 Feb 2000 13:50:39 EST."
<4.2.2.20000224134855.00a616d0@lint.cisco.com>
From: Valdis.Kletnieks@vt.edu
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Date: Thu, 24 Feb 2000 13:58:51 -0500
Errors-To: owner-nanog-outgoing@merit.edu
On Thu, 24 Feb 2000 13:50:39 EST, Paul Ferguson said:
> At 01:17 PM 02/24/2000 -0500, Valdis.Kletnieks@vt.edu wrote:
>
> >Nothing in here should come as a surprise to anybody on this list, but...
> >
> >http://www.sans.org/ddos_roadmap.htm
>
> It would have been nice if they actually referred
> to "ingress filtering" by including the proper
> document reference -- RFC2267.
Well Paul, I picked up on that, and made Randy put a specific
reference in what we shipped back to SANS. They also lost my
citations of rfcs 2196 and 2350 under Incident Response, but at least
they did keep the rfc2644 reference.
All I can say is (a) it's a living document, so hopefully we'll turn
the crank and fix a lot of that stuff up in the next version,
and (b) as it stands, it's a lot better than the *first* draft we
got hold of. ;)
--
Valdis Kletnieks
Operating Systems Analyst
Virginia Tech