nanog mailing list archives

RE: DDOS attacks lately?


From: "Rubens Kuhl Jr." <rkuhljr () uol com br>
Date: Mon, 21 Aug 2000 09:44:47 -0300



It's looking like the only way to improve is to buy bigger connections;
but in light of the Yahoo attack (800Mbps was the last word I guess?) how
big is big enough? How many OC48 connections can _your_ data center
afford?

In dealing with DDoS attacks, it is good do remember that altough channel
capacity is a number of bits per second, router capacity is packets per
second and server performance is requests per second. Very powerful DDoS
streams containing thousands of small packets per second from random spoofed
sources can put many routers, firewalls and servers down with no more than a
DS3 of bandwidth.



Rubens Kuhl Jr.








Current thread: