Header
Home | Set as homepage | Add to favorites
Sections
Syndication


Blogroll:

||||| ALL Cisco-Network ARTICLES |||||  
CCIE Journey,
The CCIE Journey, 



Techniques to Counteract DoS Attacks

image


 


While the threat of DoS attacks can’t be eliminated, it can be reduced through the following three methods:

  • Anti-DoS features Proper implementation and configuration of anti-DoS features available on routers and firewalls can help limit the effectiveness of an attack. These features could include limiting the number of half-open connections allowed at any given time or limiting the number of certain types that can originate from a source address.

  • Antispoofing features Proper implementation and configuration of antispoofing features on routers and firewalls can help limit a hacker’s ability to mask their identity. RFC 2827 filtering should be configured at a minimum (see the upcoming section “IP Spoofing”).

  • ISP traffic rate limiting The ISP agrees to filtering limits on the amount of nonessential traffic that can cross link(s) to the company at one time. The filtering might limit the volume of ICMP traffic, a common source of distributed denial of service (DDoS) attacks, into a network because it’s used only for diagnostic purposes.

59 times read

Related news

» IP Spoofing
by alperen posted on Jun 30,2009
» Limiting the Number of Peers
by admin posted on Jul 21,2008
» Unauthorized Access-Address Filtering
by alperen posted on Sep 09,2009
» Rate-Limiting Syslog Traffic
by admin posted on Jul 21,2008
» Securing the Network Review
by alperen posted on Jul 08,2009
Did you enjoy this article?
(total 0 votes)

comment Comments (0 posted) 

More Top News
CCSP-Cisco Certified Security Professional
Most Popular
Most Commented
Featured Author