[c-nsp] DDOS Attacks Mitigation

John Gitau jgitau at gmail.com
Fri Nov 4 04:39:26 EDT 2016


If you're on the cheap you could try
https://fastnetmon.com/
https://github.com/pavel-odintsov/fastnetmon  (source code and what not for
the brave). I have used it in cases where a client cant afford arbor et'all
and doesnt want to just drop the traffic.

JG


On Fri, Nov 4, 2016 at 10:50 AM, Mark Tinka <mark.tinka at seacom.mu> wrote:

>
>
> On 4/Nov/16 09:46, Samir Abid Al-mahdi wrote:
>
> > Hi,
> >
> > Ok, but how are they going to redirect my traffic to their system.
> >
> > I dont have a domain to redirect it by DNS.
> >
> > Does it mean they will BGP advertise my prefixes ? ?
>
> You'd have to discuss that with them, but at the most basic level, an
> Arbor system can automatically begin announcing a route into BGP that
> needs to have its traffic scrubbed once an attack is detected.
>
> Matching can be high-level (ASN) or granular (IP address).
>
> I suppose other systems have a similar mechanism, but I haven't used those.
>
> Mark.
>
> _______________________________________________
> cisco-nsp mailing list  cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/
>



-- 
**Gitau


More information about the cisco-nsp mailing list