10 Most Common Reasons Why You Cannot Simply Stop DDoS

Loading...

Flash Player 9 (or above) is needed to view presentations.
We have detected that you do not have it on your computer. To install it, go here.

0 comments

Post a comment

    Post a comment
    Embed Video
    Edit your comment Cancel

    1 Favorite

    10 Most Common Reasons Why You Cannot Simply Stop DDoS - Presentation Transcript

    1. Hemant Jain’s 10 Most Common Reasons why you cannot ‘simply’ stop Distributed Denial of Service (DDoS) Attacks
    2. 1. Insufficient visibility Under attack, your team does not know details of the attack. They understand the symptoms, but they can’t figure out the cause and the solution.
    3. 2. Incapable Equipment Your routers and switches are overloaded and they don’t have the capability to stop such attacks. Firewalls simply allow these packets. IPS appliances (if you have them), don’t have the rules to block such attacks. Your equipment doesn’t match up in performance that’s required.
    4. 3.Multiple links You have multiple links to the Internet. The attackers are attacking from different links.
    5. 4. Global Attack The attack is seemingly coming from all over the world. You cannot simply identify a Net-block to deny so that the attack can be stopped !! And you cannot simply block everyone !!
    6. 5. Mimicking real Users The attack is no different from legitimate users accessing your web pages from the point of your edge equipment.
    7. 6. Provider’s inability to help The only tool your service provider has is Null Routing your IP address!!
    8. 7. Lack of Automation Your team is unable to figure out the solutions quickly when the attackers are constantly changing the tactics.
    9. 8. Insufficient partitioning You have too much collateral damage. When attack happens on one part of the network, the others bleed too.
    10. 9. Incapable Software solutions Software solutions such as mod_evasive, iptables, Apache / LiteSpeed tuning, kernel tuning, not capable of handling the load.
    11. 10. Under-provisioned bandwidth You are not as rich as others to over-provision your bandwidth and to buy high-bandwidth gear.
    12. For More Information
      • IntruGuard is a Leading DDoS Solution vendor. It is globally renowned for its Network Behavior Analysis equipment.
      • Contact: IntruGuard
      • [email_address]
      • +1 408 400 4222
      • www.intruguard.com

    + IntruGuard DevicesIntruGuard Devices, 2 years ago

    custom

    600 views, 1 favs, 2 embeds more stats

    This presentation discusses why you cannot 'simply' more

    More info about this document

    © All Rights Reserved

    Go to text version

    • Total Views 600
      • 584 on SlideShare
      • 16 from embeds
    • Comments 0
    • Favorites 1
    • Downloads 0
    Most viewed embeds
    • 15 views on http://www.intruguard.com
    • 1 views on http://intruguard.com

    more

    All embeds
    • 15 views on http://www.intruguard.com
    • 1 views on http://intruguard.com

    less

    Flagged as inappropriate Flag as inappropriate
    Flag as inappropriate

    Select your reason for flagging this presentation as inappropriate. If needed, use the feedback form to let us know more details.

    Cancel
    File a copyright complaint
    Having problems? Go to our helpdesk?

    Categories