6. ProNet notifications between DMS and ISP
Activating filters local to each domain is not enough to block
an Internet-wide attack. Moreover, given the large number of source
machines involved in an attack, a large number of filters are required.
Applying these filters has an impact on router and firewall performance.
To solve this problem in a comprehensive way, DMS services can
work with ISPs to block upstream machines injecting attack traffic
as soon as possible, so as to limit the propagation of attack traffic.
ISPs can then prevent these machines from connecting to the access
network(s), by refusing to allocate IP addresses to them.
This solution requires ISPs to expose an API to provide third
parties with value-added services such as address filtering.
In concrete terms, a DPA agent determines...
You do not have access to this resource.
Exclusive to subscribers. 97% yet to be discovered!
Already subscribed?
Log in!
Ongoing reading
ProNet notifications between DMS and ISP