Re: Blackholing traffic by ASN

From: Chris Adams (no email)
Date: Thu Jan 31 2008 - 09:07:55 EST

  • Next message: Justin Shore: "Re: Blackholing traffic by ASN"

    Once upon a time, Christopher Morrow <> said:
    > > Nowadays, most equipment can blackhole internally (to null0 say) at full
    > > speed, so it isn't an issue. Just set your next hop to a good null0
    > > style location on route import and you are done for traffic destined to
    > > those locations.
    >
    > ...do uRPF-loose-mode and you kill FROM these locations as well...

    On Cisco, but not Juniper.

    -- 
    Chris Adams <>
    Systems and Network Administrator - HiWAAY Internet Services
    I don't speak for anybody but myself - that's enough trouble.
    

  • Next message: Justin Shore: "Re: Blackholing traffic by ASN"





    Hosted Email Solutions

    Invaluement Anti-Spam DNSBLs



    Powered By FreeBSD   Powered By FreeBSD