[nsp] DoS attack Discussion

M.Palis security at cytanet.com.cy
Wed Oct 15 07:38:14 EDT 2003


  Hello all

I need to discuss with you  the way DoS attacks of high amount of traffic
coming through a high Bandwidth backbone to lower bandwidth interfaces e.g
less than 2Mbps are handled.

Some of our customers are facing DoS attacks and routers  where these
customers are connected  are affected too.  I believe this is due  to the
fact that the attack goes through our backbone to the routers  where low
bandwidth customer connection exist. Of course we null0 the affected IPs but
we need a solution that will help the router to handle the traffic until we
recognise the attack and route to null0 the attacked  IPs. Do you use any
packet rate-limit on interfaces?

Any advice will be appreciated



More information about the cisco-nsp mailing list