s*****g 发帖数: 1055 | 1 Our website are constantly under D/DOS (mostly TCP SYN) attack, although our
infrastructure can handle that volume of attack, I want to implement a
solution that can detect those attacks and mitigate them such that load
balancers and back end servers only serve legitimate requests, any
suggestions? we are evaluating Juniper SRX. | t*******r 发帖数: 3271 | | m********d 发帖数: 188 | 3 no fancy way for having your load-balancer immunized from internet attack.
either let your isp block attack traffic, or your network blocks attack
traffic. planned/prepared/fast response is very important. | n********x 发帖数: 5 | 4 你们如果是和isp做BGP的话可以问问isp有没有blackhole-community
然后用ipflow做个自动检测,发现DDOS就直接把那个ip blackhole掉 |
|