LISTSERV mailing list manager LISTSERV 15.5

Help for NORDNOG Archives

NORDNOG Archives

NORDNOG Archives


Next Message | Previous Message
Next in Topic | Previous in Topic
Next by Same Author | Previous by Same Author
Chronologically | Most Recent First
Proportional Font | Monospaced Font


Join or Leave NORDNOG
Reply | Post New Message
Search Archives

Subject: Re: Detecting dDoS?
From: Kurt Erik Lindqvist KPNQwest <[log in to unmask]>
Reply-To:Kurt Erik Lindqvist KPNQwest <[log in to unmask]>
Date:Tue, 9 Apr 2002 12:56:28 +0200

TEXT/PLAIN (9 lines)

> Certainly. The first step in doing so is information. Both Nordunet and
> Sunet, whose operations I'm involved in, make extensive network information
> available publically, including load graphs for individual WAN links. These
> are often our best tools in looking where things come from.

What you could also do is just look at the amount of ICMP packets (as dDOS
is mostly done through ICMP) and publish that....

- kurtis -

Back to: Top of Message | Previous Page | Main NORDNOG Page



CataList Email List Search Powered by the LISTSERV Email List Manager