engineering --> ddos and flooding

Steven M. Bellovin smb at
Thu May 31 22:21:27 UTC 2001

In message < at>, Andrew Dorsett
>Hey, this is a technical question for all of the Network 
>Engineers/Architects on the list.  Has a method been found to stop an 
>incoming attack?  Granted you can filter the packets to null on the router, 
>but that doesn't stop them from coming across the wire and into the 
>router.  Has a way been devised to stop them from coming into the router; 
>via something like a BGP update to null the packets or what?  I'm concerned 
>about a flood that is so massive coming from the core and flooding a small 
>T1 or less.

See my talk (and the associated draft papers) from the D.C. NANOG; 
there were also several DDoS talks in Scottsdale.

		--Steve Bellovin,

More information about the NANOG mailing list