A lot can be done using dscp/qos + PBR + BGP and a decent mitigation segment (PCRE/suricata/bro ids)


On 2016-04-19, 4:52 AM, Dave Bell wrote:
You use destination black holing. Sacrifice the connectivity to one
customer to save the rest.

On 16 April 2016 at 17:25, Satish Patel <[email protected]> wrote:

We are seeing attack all over the world, how you will stop them using
source blackholing? These day most of people use opendns and chargen
style spoofing attack.

On Sat, Apr 16, 2016 at 10:53 AM, Roland Dobbins <[email protected]>
wrote:
On 16 Apr 2016, at 19:22, Satish Patel wrote:

also in DDoS S/RTBH not handy.
Incorrect.

-----------------------------------
Roland Dobbins <[email protected]>
_______________________________________________
juniper-nsp mailing list [email protected]
https://puck.nether.net/mailman/listinfo/juniper-nsp
_______________________________________________
juniper-nsp mailing list [email protected]
https://puck.nether.net/mailman/listinfo/juniper-nsp

_______________________________________________
juniper-nsp mailing list [email protected]
https://puck.nether.net/mailman/listinfo/juniper-nsp

_______________________________________________
juniper-nsp mailing list [email protected]
https://puck.nether.net/mailman/listinfo/juniper-nsp

Reply via email to