engineering --> ddos and flooding

Bill Woodcock woody at zocalo.net
Fri Jun 1 18:38:13 UTC 2001


    > > This of course kills all traffic...
    > Including the BGP session, I would think, thus causing it to reset and
    > drop the route, sending all the traffic back to the primary, which unfloods
    > the smaller link, which re-advertises, which...

Which in turn can be fixed by adding a _third_ connection between the two
routers, dedicated to advertising /32s, which the upstream/recipient then
route-maps to set-next-hop to the second connection...  :-)

Sounds to me like we need itrace soon.

                                -Bill





More information about the NANOG mailing list