Bookmark this page:
Yahoo!
Windows Live
del.icio.us
digg
Netscape
|
|
||||||||||||||||
|
Posted by on September 2, 2005, 6:09 pm
Please log in for more thread options of service attack. what do i do the block it? I see a lot of large size udp packets. Could it be a wrong subnet mask. Thanks | ||||||||||||||||
|
Posted by www.BradReese.Com on September 3, 2005, 12:09 pm
Please log in for more thread options Defense, Tracking or Mitigation: http://www.bradreese.com/cisco-security-advisories.htm#STRATEGIES Hope this helps. Brad Reese BradReese.Com Cisco Repair Service Experts http://www.bradreese.com/index.htm#EXPERTS 1293 Hendersonville Road, Suite 17 Asheville, North Carolina USA 28803 USA & Canada: 877-549-2680 International: 828-277-7272 | ||||||||||||||||
|
Posted by Igor Mamuzic on September 3, 2005, 12:10 pm
Please log in for more thread options You need first do detect what kind of UDP traffic it's about (what udp ports
are used?)... You can discover this (if you don't have netflow analyzer) by creating an ACL as follows (ACL number is only an example, please check 'show access-list 100' output to find out if there is already ACL 100 configured on your router): access-list 100 permit udp any any log access-list 100 permit ip any any Place this ACL on the interface where this susspicious traffic enters your router... Then execute 'show log' and you'll see what kind of udp traffic it's about. Then you can create adequate ACL that will block that traffic... B.R. I | ||||||||||||||||

how to stop denial of service in a 1700 router
Yahoo!
Windows Live
del.icio.us
digg
Netscape 



> of service attack. what do i do the block it? I see a lot of large size
> udp packets. Could it be a wrong subnet mask.
> Thanks
>