[j-nsp] mitigating dos attack on Juniper M10i

Stefan Fouant sfouant at shortestpathfirst.net
Tue Apr 5 10:49:10 EDT 2011


> -----Original Message-----
> From: juniper-nsp-bounces at puck.nether.net [mailto:juniper-nsp-
> bounces at puck.nether.net] On Behalf Of imutsu at gmail.com
> Sent: Tuesday, April 05, 2011 10:04 AM
> To: juniper-nsp-bounces at puck.nether.net; juniper-nsp at puck.nether.net
> Subject: Re: [j-nsp] mitigating dos attack on Juniper M10i
> 
> You should set the firewall filter on interface to your transit to
> dropped the packet.

Only good when the WAN bandwidth isn't being starved and there is excess
capacity.

Stefan Fouant, CISSP, JNCIEx2
www.shortestpathfirst.net
GPG Key ID: 0xB4C956EC



More information about the juniper-nsp mailing list