[c-nsp] DNS amplification
Masataka Ohta
mohta at necom830.hpcl.titech.ac.jp
Mon Mar 18 15:10:12 UTC 2013
Arturo Servin wrote:
> If you are the end-user organization with a multihomed topology you
> apply BCP38 within your own scope. This will help to have less spoofed
> traffic. Not solving all the problems but it would help not seeing your
> spoofed packets all over the Internet.
It does not help not seeing a spoofed packets with source addresses
of yours.
> And about the routing table size, it is not multihomed sites the
> offenders, it is large ISPs fragmenting because of traffic engineering
> or because lack of BGP knowledge.
As the number of *LARGE* ISPs is limited, it is not a problem.
Masataka Ohta
More information about the NANOG
mailing list