North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: NAP/ISP Saturation WAS: Re: Exchanges that matter...

  • From: Avi Freedman
  • Date: Fri Dec 20 17:12:29 1996

> > I think that there's some lack of clarity on the problem here.  Anyone can
> > stream packets at ANY router and take it down.  If it's not ICMP, you can
> > simply forge routing protocol packets.  It's a question of simply
> > supersaturating the system.  To truly deal with DoS attacks, there are
> > basically three approaches:
> 
> Indeed. For instance SYN-flood the BGP port.

Won't work easily.
On Criscos, the queue is per peer, not per port..

Avi

- - - - - - - - - - - - - - - - -