[nsp-sec] Ddos against 194.30.58.216/32
Borja Marcos
borjamar at sarenet.es
Tue Oct 22 05:42:34 EDT 2013
Hello
We are receiving packet love against 194.30.58.216, udp packets. Some have likely spoofed addresses (activating RPF in peering interfaces ate quite a lot of it), and some other has source ports 53 and 19.
It's flooding our transit connections.
Could you please block all icmp and udp packets to 194.30.58.216? It would be really appreciated :)
Also, any information to track it would be useful. Customer is going to prosecute,
Thank you!
Borja.
More information about the nsp-security
mailing list