Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: any recommendable anti-ddos solution? |
|---|---|
| Date: | Wed, 29 Aug 2007 10:58:32 +0100 |
Dereck, your solution will work fine if only a couple of hosts are doing the attack. But 2GB of traffic are certainly hundreds, or maybe thousands, of hosts deploying the attack. Nevertheless the problem isn't the IDS located in the destination of the attacks. The problem is: how will we manage 2GB of traffic arriving on our internet links??? It's easy, we can't!!! Only our ISP's will have the possibility to detect and block that traffic. Cisco Guard is a very good solution for that! I, personally, would like to know other solutions, commercial or free (if any). Best regards, Carlos Silva On 8/28/07, Brett Kennedy <Brett.Kennedy@caseware.com> wrote:
Why do you specifically want a commercial solution? Brett -----Original Message----- From: listbounce@securityfocus.com [mailto:listbounce@securityfocus.com] On Behalf Of theog Sent: August 28, 2007 8:14 AM To: 'Monty Ree'; security-basics@securityfocus.com Subject: RE: any recommendable anti-ddos solution? Well DDOS attacks usually have something behind them , try to find out the reason for it if there is one for example, do u have a web server on your DMZ?, an FTP server? What is the nature of the attack? There are various solutions, non of them will give you 100% effect of avoiding a DDOS attack depending on the nature of your attack you can choose the way to reduce its impact, for example hosting your web server elsewhere of using NGP with an additional ISP and a load balancer here is a nice document regarding BGP and DDOS http://staff.science.uva.nl/~delaat/snb-2004-2005/p27/report.pdf Enjoy... ;) Liran Cohen RCT Internet solutions. http://dir.rct.co.il http://www.rct.co.il -----Original Message----- From: listbounce@securityfocus.com [mailto:listbounce@securityfocus.com] On Behalf Of Monty Ree Sent: Monday, August 27, 2007 6:52 PM To: security-basics@securityfocus.com Subject: any recommendable anti-ddos solution? Hello, list. These days our network has been suffering from various ddos attack(syn flooding, udp flooding...etc). from time to time, ddos traffic is over 2G bps and this makes all network service including firewall and IPS go down.. So is there any recommendable commercial anti-ddos equipment or solution? I have heard about the cisco guard & detector and many say that only this can fight against ddos attack. right? But it seems that other anti ddos solution comes... Please recommend commercial anti ddos solution for me. Thanks in advance... _________________________________________________________________ 편리한 웹하드가 최대 1G 까지 무료! http://im.msn.co.kr/new/function/function_02_11.asp
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Unix/Linux accounts integrated within AD?, Dummy cerberus |
|---|---|
| Next by Date: | RE: Question about Active Directory and last time user has logged on, CPS Tech Support |
| Previous by Thread: | RE: any recommendable anti-ddos solution?, Brett Kennedy |
| Next by Thread: | RE: any recommendable anti-ddos solution?, Dereck Martin |
| Indexes: | [Date] [Thread] [Top] [All Lists] |