[c-nsp] DDOS Attacks Mitigation

Mike Hammett cisco-nsp at ics-il.net
Tue Nov 8 11:47:34 EST 2016


Your DDoS mitigation appliance can still send that information to the 1k to act upon as necessary. It's not as good as passing it upstream, but better than nothing. 




----- 
Mike Hammett 
Intelligent Computing Solutions 

Midwest Internet Exchange 

The Brothers WISP 

----- Original Message -----

From: "Satish Patel" <satish.txt at gmail.com> 
To: "Lukas Tribus" <luky-37 at hotmail.com> 
Cc: "Gert Doering" <gert at greenie.muc.de>, "Arie Vayner" <ariev at vayner.net>, "cisco-nsp at pu ck.nether.net" <cisco-nsp at puck.nether.net> 
Sent: Tuesday, November 8, 2016 9:25:33 AM 
Subject: Re: [c-nsp] DDOS Attacks Mitigation 

Really? 

In order to use FlowSpec what should we need to do? 

I believe in order to use flowspec your ISP should support that, is that right? 

How does it work to mitigate DDoS ? 

On Tue, Nov 8, 2016 at 7:29 AM, Lukas Tribus <luky-37 at hotmail.com> wrote: 
>> We heard about BGP Flowspec but not confident how does it work and I think ASR1006 doesn't support it. 
> 
> ASR1k supports Flowspec just fine. 
_______________________________________________ 
cisco-nsp mailing list cisco-nsp at puck.nether.net 
https://puck.nether.net/mailman/listinfo/cisco-nsp 
archive at http://puck.nether.net/pipermail/cisco-nsp/ 



More information about the cisco-nsp mailing list