Your DDoS mitigation appliance can still send that information to the 1k to act 
upon as necessary. It's not as good as passing it upstream, but better than 
nothing. 




----- 
Mike Hammett 
Intelligent Computing Solutions 

Midwest Internet Exchange 

The Brothers WISP 

----- Original Message -----

From: "Satish Patel" <[email protected]> 
To: "Lukas Tribus" <[email protected]> 
Cc: "Gert Doering" <[email protected]>, "Arie Vayner" <[email protected]>, 
"cisco-nsp@pu ck.nether.net" <[email protected]> 
Sent: Tuesday, November 8, 2016 9:25:33 AM 
Subject: Re: [c-nsp] DDOS Attacks Mitigation 

Really? 

In order to use FlowSpec what should we need to do? 

I believe in order to use flowspec your ISP should support that, is that right? 

How does it work to mitigate DDoS ? 

On Tue, Nov 8, 2016 at 7:29 AM, Lukas Tribus <[email protected]> wrote: 
>> We heard about BGP Flowspec but not confident how does it work and I think 
>> ASR1006 doesn't support it. 
> 
> ASR1k supports Flowspec just fine. 
_______________________________________________ 
cisco-nsp mailing list [email protected] 
https://puck.nether.net/mailman/listinfo/cisco-nsp 
archive at http://puck.nether.net/pipermail/cisco-nsp/ 

_______________________________________________
cisco-nsp mailing list  [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

Reply via email to