[nsp-sec] [OT] Providers with RTBH capability?

Smith, Donald Donald.Smith at CenturyLink.com
Tue Apr 2 13:25:30 EDT 2013


We support Customer Initiated Remotely Triggered Destination Based Black Hole Filtering.

(yes you have to be that specific:)





http://www.qwest.com/largebusiness/downloads/CIBHF___CPE_Instructions_0901041.pdf



We are also interested in talking about DDOS peering if anyone is interested.

I envision something like flow-spec as the base specification. Not full data scrubbing (yet anyways).

I don't care if you implement with acl's or flow-spec or ...



This would probably be like a peering contract (thus DDOS peering).







(coffee != sleep) & (!coffee == sleep)
 Donald.Smith at centurylink.com<mailto:Donald.Smith at centurylink.com>
________________________________
From: nsp-security-bounces at puck.nether.net [nsp-security-bounces at puck.nether.net] on behalf of Jason Chambers [jchambers at ucla.edu]
Sent: Tuesday, April 02, 2013 11:07 AM
To: Rabbi Rob Thomas
Cc: NSP-SEC
Subject: Re: [nsp-sec] [OT] Providers with RTBH capability?

----------- nsp-security Confidential --------

On 4/1/13 3:07 PM, Rabbi Rob Thomas wrote:
> ----------- nsp-security Confidential --------
>
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> Hi, team.
>
> Apologies to those of you seeing this in multiple forums.
>
> I'm looking for a list of transit providers who have well-supported,
> customer-enabled (not "call the NOC") RTBH [0][1] capability.  I'm not
> yet looking for sales calls, just the facts, please.  If you are one of
> those providers, or you've had a good experience with providers with
> RTBH capability, please let me know.
>

You forgot to ask about IPv6 !?

Our NSP CENIC supports RTBH and we use it regularly.  A few of CENIC's
peers support RTBH as well and we can "push" the RTBH into those
networks if wanted.

I started working with them to get IPv6 support setup but I shelved that
as low priority a while back.

--Jason



_______________________________________________
nsp-security mailing list
nsp-security at puck.nether.net
https://puck.nether.net/mailman/listinfo/nsp-security

Please do not Forward, CC, or BCC this E-mail outside of the nsp-security
community. Confidentiality is essential for effective Internet security counter-measures.
_______________________________________________



More information about the nsp-security mailing list