[66153] in North American Network Operators' Group
Re: Stopping ip range scans
daemon@ATHENA.MIT.EDU (Anton L. Kapela)
Mon Dec 29 12:56:54 2003
In-Reply-To: <Pine.LNX.4.44.0312290326440.21468-100000@sokol.elan.net>
Date: Mon, 29 Dec 2003 11:43:53 -0600 (CST)
From: "Anton L. Kapela" <kapela@mwdt.com>
To: nanog@nanog.org
Reply-To: kapela@mwdt.com
Errors-To: owner-nanog-outgoing@merit.edu
william@elan.net said:
> So I'm wondering what are others doing on this regard?
One of the more effective ways to deal with this would be to request that
upstream(s) null-route your aggregate until the attack subsides.
--Tk