[c-nsp] DoS resiliency/security BCP for C7609?

Kim Onnel karim.adel at gmail.com
Wed Dec 14 04:38:37 EST 2005


There is a doc. at cisco for securing the 6500/7600

it has alot of features, you have to mainly run netflow
monitor with snmp
CoPP
put correct filters

But netflow is your answer.


On 12/13/05, Zitibake <zitibake at yahoo.com> wrote:
>
> Can anyone think of some best current practices for plugging any
> vulnerabilities on the C7609?  I have one at the public edge of my
> network, and
> need to do what I can to help keep it running.  My device is just doing
> simple
> ospf/bgp/netflow.  I'm not talking about stopping a DoS on the 7609; just
> survivability of the device itself.
>
> For example, I saw a note here awhile back about performance issues when
> fragmenting large numbers of pps on the 7609.
>
> Zitibake
>
>
> __________________________________________________
> Do You Yahoo!?
> Tired of spam?  Yahoo! Mail has the best spam protection around
> http://mail.yahoo.com
> _______________________________________________
> cisco-nsp mailing list  cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/
>


More information about the cisco-nsp mailing list