[AusNOG] DDOS mitigation

Dobbins, Roland rdobbins at arbor.net
Thu May 9 18:12:53 EST 2013


On May 9, 2013, at 1:37 PM, Matt Carter wrote:

> Consider if you want to blackhole a /32 because it is under attack, with some of the bit rates seem of recent attacks, its potentially/likely affecting the upstream provider aswell and may have impact to their other customers or at least a segment of their access network.

It's odd how folks still tend to focus on destination-based blackholing, when S/RTBH works quite well:

<http://tools.ietf.org/html/rfc5635>

<https://www.box.com/s/xznjloitly2apixr5xge>

-----------------------------------------------------------------------
Roland Dobbins <rdobbins at arbor.net> // <http://www.arbornetworks.com>

	  Luck is the residue of opportunity and design.

		       -- John Milton




More information about the AusNOG mailing list