- Securing SSLVPN with client certificates
- Toshiba propels DVD quality to near HD
- 16 hot roles for IT pros
- Torvalds: Fed up with the 'security circus'
- The dos and don'ts of IT job seeking
News | Newsletters | Podcasts | Chats | Opinions | RSS Feeds | This Week In Print | IT Careers | Community | Reports | Downloads | Slideshows | New Data Center
Partner Sites:App Performance | On Demand Security | Networking Solution | SOA | Value of WDS
Here’s what worked in Estonia to battle the recent denial-of-service attacks:
1. Admitting what’s going on. The Estonian government didn’t deny or try to hide the attacks. Because the attacks were globally sourced, ISPs that provide transit to Estonia could see that something was wrong. The Estonian government was wise not to try to deny the attack as a sign of weakness or cover it up as an embarrassment.
2. Asking for help. The Estonian Computer Emergency Response Team reached out to its peers in the North Atlantic Treaty Organization (NATO) and the service provider community to help it stop the flood of traffic before it hit their networks.
3. Rapid response. Experts converged upon Estonia to assist government officials and network service providers with attack analysis so they could start blocking traffic farther upstream.
4. ISP cooperation. Service providers worked together to help mitigate the attacks. Using such forums as the North American Network Operators’ Group, ISPs have existing relationships that are useful when denial-of-service and other attacks occur.
5. State-of-the-art network-filtering techniques. Vendors including Arbor Networks and Cisco deployed high-speed gear to filter out selective types of traffic at line rates to minimize the DoS attacks. This gear helped keep targeted Web sites running.
Source: José Nazario, senior security researcher, Arbor Networks
Partner Content
Brilliantly simple security and control solutions for email, web and endpoint
www.sophos.com
Stopping data leakage
Learn how to exploit your current security investment to control the information that flows into, through and out of your network.
Download the white paper.
Why detection rates aren't enough
Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask to prospective vendors to get the right endpoint solution.
Download the white paper.
Unauthorized applications: Taking back control
Employees installing and using unauthorized applications like IM, VoIP, games and peer-to-peer file-sharing applications cause many businesses serious concern. How do you control these applications?
Download the white paper.
Comments (12)
Naive expertBy Anonymous on September 15, 2007, 1:55 pmThere's no way to determine who was ultimately behind the Estonian attack. Characterizing as not a Russian attack because of its scope is naive. New weapons are...
Reply | Read entire comment
More details neededBy Riva Saker on September 13, 2007, 12:05 pmReporter Carolyn Duffy Marson vaguely answered the standard journalism questions who, what, when, where and why. She completely avoided the question, how. How were...
Reply | Read entire comment
the meaning cyberwar seemsBy Anonymous on August 31, 2007, 11:26 amthe meaning cyberwar seems trouble for technology industry. Daily hackers are being new ways to break in computers systems and steal personal information. The government...
Reply | Read entire comment
Always Looking BackwardBy roller-coaster pilot on August 31, 2007, 10:40 amWhat if the next world war doesn't involve bombs and bullets as a primary weapons? This looks like one of those technological disruptors is about to impact "the...
Reply | Read entire comment
geography or population?By rower30 on August 28, 2007, 1:49 pmWell, he said it is about the size of Rhode Island based on "population" as it relates to network size. I don't think he meant land mass, but robustness of the...
Reply | Read entire comment
View all comments