Live data from Hacker News

IP Spoofing

idea.popcount.org

131–136 of 136 posts

Re: IP Spoofing

#131

Warning: Sales pitch masquerading as a technical talk.

Warning: Someone's cranky. It's a technical talk. It's much better to hear from people who are being attacked regularly and have a track record of dealing with it rather than those who have no clue.

sure except their paper just describes the issue and their solution is "pay us money". Not really up to the same standard as even a bad academic article, more like the paid talk track at a conference, you know, the kind lots of people avoid.

Re: IP Spoofing

#132
post #115

Earlier quoted context omitted.

Currently DDoS requires insecure hardware. If it didn't, we're one step closer to fixing it.

This statement is simply not true.

Sorry, missing word.

Currently, DDoS doesn't require compromised hardware, because of spoofing.

But if there were no spoofing, compromised hardware would be a requirement, and we're one step closer.

Re: IP Spoofing

#134

Earlier quoted context omitted.

Warning: Someone's cranky. It's a technical talk. It's much better to hear from people who are being attacked regularly and have a track record of dealing with it rather than those who have no clue.

sure except their paper just describes the issue and their solution is "pay us money". Not really up to the same standard as even a bad academic article, more like the paid talk track at a conference, you know, the kind lots of people avoid.

They laid out several solutions, and none of them are specific to their platform. They also highlighted how the attacks are changing and if you're to effectively defend yourself you'll need to have more resources on hand.

You can pay them, you can do it yourself, you can pay someone else, but at least you have options.

Re: IP Spoofing

#136
post #20

Earlier quoted context omitted.

This sounds great in principle, but it breaks down in practice. From the article, 27% of ISPs still allow spoofing on their networks. This is mostly due to them being smaller, regional ISPs without the expertise or staff to figure out how to do this. I hear you saying "just blackhole them until they figure it out," but it's not that easy. In many cases, the small regional ISP is the customer of a larger ISP, who is t…

You use netflow to identify the offender of course!

LOL - there's a netflow and ipfix/ipfreely joke in there somewhere...
Post reply on HN