OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Networking theories
From: Matthew King (Matthew.KingCWO.NET.AU)
Date: Fri May 05 2000 - 19:58:20 CDT


Hi.

Not many ISP or providers actually do that kind of egress checking.. I do
not know of many here in Oz that do.

Cya
Matthew

 -----Original Message-----
From: Bluefish [mailto:11aGMX.NET]
Sent: Saturday, 6 May 2000 10:07 AM
To: VULN-DEVSECURITYFOCUS.COM
Subject: Re: Networking theories

> victim.org(spoofed) ---> ICMP(source-quench) --->
> router.victim.org

Actually, there was a email from... cert (I think) ... intended for larger
companies and ISPs with guidelines for combating DDoS. Among those
guidelines there was recommendations of checking source IP. So it's a
known problem which responsible ISPs will stop (but probably most doesn't)

..:::::::::::::::::::::::::::::::::::::::::::::::::..
     http://www.11a.nu || http://bluefish.11a.nu
    eleventh alliance development & security team