[Tier1 ISP] : Vulnerable to a new DDoS amplification attack

Roland Dobbins rdobbins at arbor.net
Thu Dec 22 17:04:03 UTC 2016

On 22 Dec 2016, at 23:56, Tom Beecher wrote:

> What he did was send 1500 byte ICMP packets with a max TTL at an IP 
> address that is not reachable due to a routing loop.

Same here.  Here's some context I sent him:




Note related discussion of mitigation tactics here (e.g., TTL-based 
filtering via tACLs):


Roland Dobbins <rdobbins at arbor.net>

More information about the NANOG mailing list