Re: DDoS detection and mitigation systems

2003-11-03 Thread Alex Yuriev
Do you use/develop in-house tools to analyze Netflow on your peering routers and have that interface in near-realtime with the said routers to null route (BGP and RPF) the offending sources? Source or destination? Null routing source of DOS is not going to do you any good. Null routing

Re: DDoS detection and mitigation systems

2003-11-03 Thread Christopher L. Morrow
On Mon, 3 Nov 2003, Alex Yuriev wrote: Do you use/develop in-house tools to analyze Netflow on your peering routers and have that interface in near-realtime with the said routers to null route (BGP and RPF) the offending sources? Source or destination? Null routing source of DOS is not

DDoS detection and mitigation systems

2003-11-02 Thread Mailing List Subscriptions
I am looking for real world feedback on the effectiveness of DDoS detection and mitigation devices from Riverhead, Top Layer, ISS (Proventia), Melior, etc. Some of them make pretty impressive claims of performance, too good to be true? This would be used in conjunction with other techniques as