[lacnog] DDoS, ataques de amplificacion y BCP38
Arturo Servin
aservin en lacnic.net
Mie Mar 27 17:16:43 BRT 2013
Hay una discusion interesante sobre DDoS, ataques de amplificacion y
BCP38 en la lista de nanog.
De ahi este par de articulos (sobre DDoS de mas de 100 Gbps) que nos
dice lo importante de aplicar el BCP38 a nuestras redes:
New York Times
http://www.nytimes.com/2013/03/27/technology/internet/online-dispute-becomes-internet-snarling-attack.html
http://blog.cloudflare.com/the-ddos-that-almost-broke-the-internet
Espero que en estas listas la mayoria se asegure que el trafico que
sale de sus redes y de sus clientes no sea de direcciones de IP "spoofeadas"
Extracto del articulo del NY Times:
"The heart of the problem, according to several Internet engineers, is
that many large Internet service providers have not set up their
networks to make sure that traffic leaving their networks is actually
coming from their own users. The potential security flaw has long been
known by Internet security specialists, but it has only recently been
exploited in a way that threatens the Internet infrastructure."
Slds
as
Más información sobre la lista de distribución LACNOG