DDos syn attack

Mike Hyde mhyde at escape.ca
Mon Dec 30 14:44:26 UTC 2002

Just wondering how people have delt with DDOS syn attacks on port 80 of
a customers server?  We had an attack a couple of days ago, and it
overwelmed both the customers firewall and, when we tried to turn up
filtering on a 7600 cisco router, the router also.  We ended up having
the customer change his IP for the site under attack.  We were lucky in
that the attack was against an IP and not the DNS name.
Mike Hyde <mhyde at escape.ca>

More information about the NANOG mailing list