[nsp] 82/8 allocated to RIPE

Rob Thomas robt@cymru.com
Sun, 24 Nov 2002 11:03:04 -0600 (CST)


Hi, Scott.

] If people can't keep current they shouldn't filter at all.

If people can't manage such filters (requiring rare update, as already
noted), I am left to wonder what else they aren't managing closely.  :/

There are greater risks than simply DDoS by not filtering the
unallocated space.  There have been at least two cases where spammers
announced unallocated space, then used it to generate spam.  After
issuing their spam, they unannounce the space.  Try to track that one
down two days later...  :(  Oh, if you think spammers don't own small
ISPs (and the accompanying ASNs), think again.

Please keep in mind that in many (most?) places such filtering is a
new process.  As with all new processes it will take time to polish
them up to a fine, working order.  The end result is well worth it.
If you don't believe me, feel free to tell me that after you've
received 1Gbps+ from 1/8 or spam from 37/8.

Thanks,
Rob.
-- 
Rob Thomas
http://www.cymru.com
ASSERT(coffee != empty);