[53765] in North American Network Operators' Group
Re: Odd DDoS, anyone else seen this?
daemon@ATHENA.MIT.EDU (Valdis.Kletnieks@vt.edu)
Mon Nov 25 13:19:30 2002
To: variable@ednet.co.uk
Cc: nanog@merit.edu
In-Reply-To: Your message of "Mon, 25 Nov 2002 14:03:14 GMT."
<Pine.LNX.4.44.0211251351090.23339-100000@pachabel.ednet.co.uk>
From: Valdis.Kletnieks@vt.edu
Date: Mon, 25 Nov 2002 13:16:34 -0500
Errors-To: owner-nanog-outgoing@merit.edu
--==_Exmh_842344058P
Content-Type: text/plain; charset=us-ascii
On Mon, 25 Nov 2002 14:03:14 GMT, variable@ednet.co.uk said:
> I know that these are both legitimate IP addresses, but if they are only
> being used for DDoS then surely we should look at locking them down (in
> the same way as broadcast packets have been)?
We should look at locking them down the same way we've looked at locking
down broadcast packets? Or am I incorrect, and in fact Smurf attacks have
become so rare that they are once again only of theoretical interest?
--==_Exmh_842344058P
Content-Type: application/pgp-signature
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)
Comment: Exmh version 2.5 07/13/2001
iD8DBQE94mkBcC3lWbTT17ARArRGAJ9Wne//++f9J7Nq3OizHzv7P8s3XgCfXwM0
PdHXrRVu9Lu13ueAGe4EKBs=
=76yw
-----END PGP SIGNATURE-----
--==_Exmh_842344058P--