[34026] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Proactive steps to prevent DDOS?

daemon@ATHENA.MIT.EDU (Adam Rothschild)
Sat Jan 27 01:05:21 2001

Date: Sat, 27 Jan 2001 01:00:39 -0500
From: Adam Rothschild <asr@latency.net>
To: nanog@merit.edu
Message-ID: <20010127010039.A69077@og.latency.net>
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <Pine.BSO.4.10.10101270038270.10437-100000@spider.pilosoft.com>; from alex@pilosoft.com on Sat, Jan 27, 2001 at 12:42:20AM -0500
Errors-To: owner-nanog-outgoing@merit.edu


On Sat, Jan 27, 2001 at 12:16:33AM -0500, Richard A. Steenbergen wrote:
> http://www.e-gerbil.net/ras/dos.txt

This is useful, and would make for an interesting NANOG presentation.

On Sat, Jan 27, 2001 at 12:42:20AM -0500, Alex Pilosov wrote:
> Read: DDoS targets which bring no cash revenue, essentially
> loss-leaders.

You'd be surprised much much publicity (and in turn, legitimate
business) hosting an IRC server has brought various providers.  But
that's beyond the scope of this discussion.

> That doesn't quite work when ebay.com is being DDoSed [...]

Nope, nor is it really intended to.

What it will do is, help protect smaller hosts/networks targeted by
less determined DDoS kiddies -- the type who'll realize "d'oh, I can't
reach this anymore!" and move on to to their next target.  And if
nothing else, it will protect smaller people w/ 95% burstable pipes,
whose upstreams aren't willing lend a hand when they're under attack,
from having their monthly bandwidth bills skyrocket.

-adam


home help back first fref pref prev next nref lref last post