PlayStationNetwork blocking of CGNAT public addresses

Florian Weimer fw at deneb.enyo.de
Sun Sep 18 13:56:30 UTC 2016


* Rich Kulawiec:

> For example: if the average number of outbound SSH connections
> established per hour per host across all hosts behind CGNAT is 3.2,
> and you see a host making 1100/hour: that's a problem.  It might be
> someone who botched a Perl script; or it might be a botted host
> trying to brute-force its way into something.

If you do this, you break Github.

(If I guess Simon's network correctly, then I've seen reports which
suggest that they might already be doing this.)



More information about the NANOG mailing list