Re: Identifying DoS sources quickly (was: Bogon list or Dshield.orgtype list)

2002-08-01 Thread Rafi Sadowsky
## On 2002-07-31 10:09 +0200 Jesper Skriver typed: JS On Wed, Jul 31, 2002 at 12:22:30AM -0700, Randy Bush wrote: JS JS AFAIK 12.0S only has the service provider feature set JS JS i fear that the joke is on us. at least one other train seems to JS have been merged into the ex-isp train.

Re: Identifying DoS sources quickly (was: Bogon list or Dshield.orgtype list)

2002-07-31 Thread Rafi Sadowsky
## On 2002-07-30 08:23 -0700 Randy Bush typed: RB RB Not a complete solution but a start: RB IP Source Tracker: RB http://www.cisco.com/univercd/cc/td/doc/product/software/ios120/120newft/120 RB limit/120s/120s21/ipst.htm RB Available as of 12.0(22)S for 7500 and 12000 series Cisco

Re: Identifying DoS sources quickly (was: Bogon list or Dshield.orgtype list)

2002-07-31 Thread Randy Bush
AFAIK 12.0S only has the service provider feature set i fear that the joke is on us. at least one other train seems to have been merged into the ex-isp train. not sure how much. can't get a straight answer. welcome back to 1997, and bye bye what stability we had. randy

Re: Identifying DoS sources quickly (was: Bogon list or Dshield.orgtype list)

2002-07-30 Thread Dan Hollis
On Tue, 30 Jul 2002 [EMAIL PROTECTED] wrote: The owners of the attacking devices are accessories to the crime although I'm sure they could plead ignorance and avoid any liability. But what if they could not plead ignorance? What if we could identify some of the attacking devices, and what