syn flood attacks from NL-based netblocks

Töma Gavrichenkov ximaera at gmail.com
Mon Aug 19 19:05:30 UTC 2019


On Mon, Aug 19, 2019, 9:24 PM Florian Brandstetter <florianb at squareflow.net>
wrote:

> ​Load balancing is done on Layer 4 or Layer 3 when routing, so your
> ingress connection will have the same hash as the outgoing connection
> (unless the source port of the connection changes on the ACK - which it
> really should not).
>

If the hash is symmetric, yes.  No wonder topology issues would have more
impact, my point was that there are also other things to look at here.

--
Töma

>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20190819/e4696ae6/attachment.html>


More information about the NANOG mailing list