OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-Disclosure] Block notification / bounce mails (as in DDOS)

From: Koen (koen4securityhotmail.com)
Date: Thu Apr 01 2004 - 13:53:42 CST


Aditya, ALD [Aditya Lalit Deshmukh] wrote:
> point the mx to 127.0.0.1 or localhost for 3 days
>

Thanks,
That sounds like a good solution, could you think of any other side-effects?

One think that crossed my mind later on was :
- change my mx-records to one mailhost 'X' that's on my netblock (so making
sure that possibly the backup-mailexchangers don't get annoyed)
- contact my isp and ask them to block all traffic directed to 'X' to port 25
on their border routers
Koen

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html