[4331] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Re[2]: SYN floods (was: does history repeat itself?)

daemon@ATHENA.MIT.EDU (Michael Dillon)
Thu Sep 12 15:15:42 1996

Date: Thu, 12 Sep 1996 12:09:44 -0700 (PDT)
From: Michael Dillon <michael@memra.com>
To: nanog@merit.edu
In-Reply-To: <v03007824ae5e06a40fbb@[198.108.88.23]>

On Thu, 12 Sep 1996, John G. Scudder wrote:

> Insofar as guys who "barely know what a TCP SYN is" are unlikely to twist
> the knobs, defaulting filtering to "block spoofed addresses" seems like the
> best and maybe only way to get them to do it.

If we can get config instructions for all the popular NAS boxes like
Ascend, Livingston, USR etc. posted to a web page somewher then we can get
the word out to a lot of ISP's via the 7 or 8 ISP mailing lists,
Boardwatch magazine and USENET. But for the benefit of those maginally
clueful people out there we need to have some fairly explicit
instructions.

I know ra.net has an ISP section on their WWW server and it wouldn't hurt
to point more ISP's at www.ra.net anyway.

Michael Dillon                   -               ISP & Internet Consulting
Memra Software Inc.              -                  Fax: +1-604-546-3049
http://www.memra.com             -               E-mail: michael@memra.com


home help back first fref pref prev next nref lref last post