[53765] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Odd DDoS, anyone else seen this?

daemon@ATHENA.MIT.EDU (Valdis.Kletnieks@vt.edu)
Mon Nov 25 13:19:30 2002

To: variable@ednet.co.uk
Cc: nanog@merit.edu
In-Reply-To: Your message of "Mon, 25 Nov 2002 14:03:14 GMT."
             <Pine.LNX.4.44.0211251351090.23339-100000@pachabel.ednet.co.uk> 
From: Valdis.Kletnieks@vt.edu
Date: Mon, 25 Nov 2002 13:16:34 -0500
Errors-To: owner-nanog-outgoing@merit.edu


--==_Exmh_842344058P
Content-Type: text/plain; charset=us-ascii

On Mon, 25 Nov 2002 14:03:14 GMT, variable@ednet.co.uk said:
> I know that these are both legitimate IP addresses, but if they are only 
> being used for DDoS then surely we should look at locking them down (in 
> the same way as broadcast packets have been)?

We should look at locking them down the same way we've looked at locking
down broadcast packets? Or am I incorrect, and in fact Smurf attacks have
become so rare that they are once again only of theoretical interest?

--==_Exmh_842344058P
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)
Comment: Exmh version 2.5 07/13/2001

iD8DBQE94mkBcC3lWbTT17ARArRGAJ9Wne//++f9J7Nq3OizHzv7P8s3XgCfXwM0
PdHXrRVu9Lu13ueAGe4EKBs=
=76yw
-----END PGP SIGNATURE-----

--==_Exmh_842344058P--

home help back first fref pref prev next nref lref last post