North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: engineering --> ddos and flooding

  • From: Steven M. Bellovin
  • Date: Thu May 31 18:25:10 2001

In message <[email protected]>, Andrew Dorsett
 writes:
>
>Hey, this is a technical question for all of the Network 
>Engineers/Architects on the list.  Has a method been found to stop an 
>incoming attack?  Granted you can filter the packets to null on the router, 
>but that doesn't stop them from coming across the wire and into the 
>router.  Has a way been devised to stop them from coming into the router; 
>via something like a BGP update to null the packets or what?  I'm concerned 
>about a flood that is so massive coming from the core and flooding a small 
>T1 or less.
>

See my talk (and the associated draft papers) from the D.C. NANOG; 
there were also several DDoS talks in Scottsdale.


		--Steve Bellovin, http://www.research.att.com/~smb