North American Network Operators Group Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical Re: Odd DDoS, anyone else seen this?
> Looked just like a regular SYN flood to the target IP. Not sure why they > picked source addresses that were so obviously bogus though. > > Can anyone think of a reason why this sort of traffic should be routed at > all? Does anyone actually drop hosts on to addresses ending in x.x.x.0? x.x.0.0 is a valid ip address for networks with bit lengths of 0 through 15. And yes, folks do use /32 and /31 addresses which end in .0. > Rich
|