UDP port 80 DDoS attack

George Bonser gbonser at seven.com
Wed Feb 8 09:03:48 UTC 2012



>From: Keegan Holley 

>How do you stop it?  

A provider knows what destination IP traffic they route TO a customer, don't they?  That should be the only source IPs they accept FROM a customer.


If you don't route it TO the customer, you shouldn't accept it FROM the customer unless you have made special arrangements with them and verified they are entitled to source the traffic from the desired IPs.






More information about the NANOG mailing list