[74556] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: FYI: RFC 3882 on Configuring BGP to Block Denial-of-Service Attacks

daemon@ATHENA.MIT.EDU (Christopher L. Morrow)
Fri Oct 1 22:29:46 2004

Date: Sat, 02 Oct 2004 02:28:43 +0000 (GMT)
From: "Christopher L. Morrow" <christopher.morrow@mci.com>
In-reply-to: <Pine.GSO.4.58.0410020051030.10024@sharpie.argfrp.us.uu.net>
To: "Fergie (Paul Ferguson)" <fergdawg@netzero.net>
Cc: nanog@merit.edu
Errors-To: owner-nanog-outgoing@merit.edu



On Sat, 2 Oct 2004, Christopher L. Morrow wrote:
> On Sat, 2 Oct 2004, Fergie (Paul Ferguson) wrote:
>
> > Given recent discussions on blackholing traffic, this may
> > be of interest.

> > communities to remotely trigger black-holing of a particular
> > destination network to block denial-of-service attacks.  Black-holing
> > can be applied on a selection of routers rather than all BGP-speaking
> > routers in the network.  The document also describes a sinkhole tunnel
>
> This tunneling is 'centertrack' which is patented... Also, tunneling is a
> dangerous prospect when you get very large amounts of attack traffic.

hrm... unless Robert can send the Patent No. I think I was mistaken,
CenterTrack wasn't patented, though I could swear it was...

-Chris

home help back first fref pref prev next nref lref last post