On Wed, 25 Mar 2009, Julio Arruda wrote:


- The device has more horse-power and potential capabilities than 7200 with any NPE. It survived several DoS attacks, while 7200 died.

Interesting, the Control-plane in the IOS-XE, from what I understand, is not the legacy piece IOS, correct ? Is this better DDoS survival because of the raw CPU power being better, or because the attack was against a downstream customer ? The IP under attack was the router itself ? Or even better, it was some attack that would 'punt' traffic from the QFP to the Route processor ?

DoS attacks against the downstream customer. I would be interested in the mitigating possibilities for the other possibilities with ASR 1000.

Best Regards,
                Janos Mohacsi

For summary, the ASR100 platform for WAN aggregation is quite ready yet, potentially it will be good in a year time.

Best Regards,
        Janos Mohacsi


_______________________________________________
cisco-nsp mailing list  [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

Reply via email to