syn attack and source routing

Brett D. Watson bwatson at genuity.net
Wed Sep 18 06:36:52 UTC 1996


  i'm surprised there has been no discussion of turning off source 
routing on major backbones to help alleviate this problem.  all of 
the focus seems to be on the edges of the networks when in fact the 
attackers are "running right up the middle".  i'm not disagreeing 
that providers need to filter on the edges but the "big guys" are 
just as responsible as the "little guys".

  i know what a can of worms this is because source routing is quite 
useful in tracking down network and routing problems but it seems to 
me the danger it imposes today outweighs it's usefulness.

-brett






More information about the NANOG mailing list