[64722] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: [arin-announce] IPv4 Address Space (fwd)

daemon@ATHENA.MIT.EDU (Owen DeLong)
Fri Oct 31 12:21:00 2003

Date: Fri, 31 Oct 2003 09:16:07 -0800
From: Owen DeLong <owen@delong.com>
To: Alex Yuriev <alex@yuriev.com>, Valdis.Kletnieks@vt.edu
Cc: william@elan.net, nanog@merit.edu
In-Reply-To: <Pine.LNX.4.44.0310310743030.11492-100000@s1.yuriev.com>
Errors-To: owner-nanog-outgoing@merit.edu


--==========229A86FB2191F2107E9C==========
Content-Type: text/plain; charset=us-ascii; format=flowed
Content-Transfer-Encoding: quoted-printable
Content-Disposition: inline

Are you actually saying that providers in the middle should build their
networks to accommodate any amount of DDOS traffic their ingress can
support instead of filtering it at their edge?  How do you expect them
to pay for that?  Do you really want $10,000/megabit transit costs?

Owen


--On Friday, October 31, 2003 7:43 AM -0500 Alex Yuriev <alex@yuriev.com>=20
wrote:

>
>> > It is content filtering. You are filtering packets that you think are
>> > causing problems to the ES that you may not control.
>>
>> No, he said quite clearly he's filtering packets (such as Nachi ICMP)
>> that are causing harm to *his* network.  He gets to make a choice -
>> filter the known problem packets so the rest of the traffic can get
>> through, or watch the network melt down and nobody gets anything.
>
> He needs to fix his network so those 92 byte ICMP packets wont break it.
>
> Alex
>
>



--=20
If it wasn't signed, it probably didn't come from me.

--==========229A86FB2191F2107E9C==========
Content-Type: application/pgp-signature
Content-Transfer-Encoding: 7bit

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (Darwin)

iD8DBQE/opjXn5zKWQ/iqj0RAgKIAKCHuDHzRs3ANzI//VN+Q94cVfb6kgCePLDh
rgf4+Hy3mb6V3QasCGJ4MAM=
=Si5/
-----END PGP SIGNATURE-----

--==========229A86FB2191F2107E9C==========--


home help back first fref pref prev next nref lref last post