The sad part about this is that a simple rate-limit on ICMP traffic on a
Linux NetFilter firewall could have kept each of these systems afloat.

:)

For those of you administering firewalls, you might want to make sure
you have a rate-limit for ICMP in your ruleset.

This was a simple DDOS, and future ones could involve more sophisticated
means, but this is elementary stuff taken to a large scale.

Attachment: msg07623/pgp00000.pgp
Description: PGP signature

Reply via email to