Increase in Protocol 47 (GRE) traffic since end of December 2016
1–10 of 13 posts
Re: Increase in Protocol 47 (GRE) traffic since end of December 2016
#2Hey you can just tunnel via udp right??
Re: Increase in Protocol 47 (GRE) traffic since end of December 2016
#3Re: Increase in Protocol 47 (GRE) traffic since end of December 2016
#4Re: Increase in Protocol 47 (GRE) traffic since end of December 2016
#5Thought given the moderate amount of traffic, maybe it isn't a hugely effective DDoS method.
Even if a consumer device doesn't use GRE, it doesn't mean it isn't there. GRE is often included in Linux kernels.
Re: Increase in Protocol 47 (GRE) traffic since end of December 2016
#6There is a probably a consumer device that has a GRE listener running, and it is possible to send it a small packet, and it will return back some sort of error response. So classic amplification. Thought given the moderate amount of traffic, maybe it isn't a hugely effective DDoS method. Even if a consumer device doesn't use GRE, it doesn't mean it isn't there. GRE is often included in Linux kernels.
Re: Increase in Protocol 47 (GRE) traffic since end of December 2016
#7This is when somebody gets the bright idea to block all protocols other than TCP and UDP. Hey you can just tunnel via udp right??
Re: Increase in Protocol 47 (GRE) traffic since end of December 2016
#8This is when somebody gets the bright idea to block all protocols other than TCP and UDP. Hey you can just tunnel via udp right??