[nsp-sec] Info share: REN-ISAC alert DNS Amplification attacks

SURFcert - Peter p.g.m.peters at utwente.nl
Thu May 9 15:40:21 EDT 2013


Donald,

Smith, Donald wrote on 2013-05-09 19:01:

> But since I can't control my customers routers (for the most part) I have to depend on ingress filtering.

With ingress you mean filtering what comes from your customers? Because
that is reasonable to do. You know what IP addresses the have (or
advertise toward you) so you can stop them from spoofing anything else.

-- 
Peter Peters                     /------\           SURFnet bv
SURFcert                         | SURF |           cert.surfnet.nl
cert at surfnet.nl                  \-----\ \-----\    Postbus 19035
PGP Key ID 0x5A52C966                   | CERT |    NL-3501 DA  Utrecht
+31 30 2305 305                         \------/    fax: +31 30 2305 329

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 455 bytes
Desc: OpenPGP digital signature
URL: <https://puck.nether.net/mailman/private/nsp-security/attachments/20130509/1164b685/attachment-0001.sig>


More information about the nsp-security mailing list