nanog mailing list archives

Re: TCP RST attack (the cause of all that MD5-o-rama)


From: vijay gill <vgill () vijaygill com>
Date: Tue, 20 Apr 2004 21:55:20 +0000


On Tue, Apr 20, 2004 at 09:45:01PM +0000, vijay gill wrote:

infrastructure today - a large amount of PPS at the _router_ (with or
without md5 or tcpsecure) will blow it out of the water. A 10mbits/s
of packets at the juniper without md5 will also destroy it.

To be clear, I was just using jnx as an example. There are very few
currently shipping boxes that will survive a large PPS attack.

(also to be fair, been a while since I verified the above numbers)

/vijay


Current thread: