[55988] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: M$SQL cleanup incentives

daemon@ATHENA.MIT.EDU (Iljitsch van Beijnum)
Thu Feb 20 16:11:39 2003

Date: Thu, 20 Feb 2003 22:11:06 +0100 (CET)
From: Iljitsch van Beijnum <iljitsch@muada.com>
To: William Allen Simpson <wsimpson@greendragon.com>
Cc: <nanog@merit.edu>
In-Reply-To: <3E551577.EC794D40@greendragon.com>
Errors-To: owner-nanog-outgoing@merit.edu


On Thu, 20 Feb 2003, William Allen Simpson wrote:

> Worse, it only takes 1 infected host to re-infect the entire net in
> about 10 minutes.  So, the entire 'net has to cooperate, or we'll see
> continual re-infection.

Only if people didn't fix their servers. And if they didn't, this
"reverse" denial of service attack is a good reminder.

> Unfortunately, this is a cost that prevents pain to others, rather
> than self-inflicted pain.  Another pollution of the commons issue.

Seems to me that filtering is no longer necessary unless you have reason
to believe your customers are going to install new vulnerable boxes or
vulnerable software on existing boxes AND their pipe to you is so big
the excess traffic is going to hurt you more than them.


home help back first fref pref prev next nref lref last post