engineering --> ddos and flooding

Steven M. Bellovin smb at research.att.com
Thu May 31 22:21:27 UTC 2001


In message <4.3.2.7.2.20010531175313.024ed980 at mail.netpath.net>, Andrew Dorsett
 writes:
>
>Hey, this is a technical question for all of the Network 
>Engineers/Architects on the list.  Has a method been found to stop an 
>incoming attack?  Granted you can filter the packets to null on the router, 
>but that doesn't stop them from coming across the wire and into the 
>router.  Has a way been devised to stop them from coming into the router; 
>via something like a BGP update to null the packets or what?  I'm concerned 
>about a flood that is so massive coming from the core and flooding a small 
>T1 or less.
>

See my talk (and the associated draft papers) from the D.C. NANOG; 
there were also several DDoS talks in Scottsdale.


		--Steve Bellovin, http://www.research.att.com/~smb





More information about the NANOG mailing list