<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic where to deploy a ddos solution in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/where-to-deploy-a-ddos-solution/m-p/2367079#M308232</link>
    <description>&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;A question, If I was an internet based company&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;where would be best to deploy ddos protection?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and what are the best solutions for this ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Carl&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 03:09:54 GMT</pubDate>
    <dc:creator>carl_townshend</dc:creator>
    <dc:date>2019-03-12T03:09:54Z</dc:date>
    <item>
      <title>where to deploy a ddos solution</title>
      <link>https://community.cisco.com/t5/network-security/where-to-deploy-a-ddos-solution/m-p/2367079#M308232</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;A question, If I was an internet based company&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;where would be best to deploy ddos protection?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and what are the best solutions for this ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Carl&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 03:09:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/where-to-deploy-a-ddos-solution/m-p/2367079#M308232</guid>
      <dc:creator>carl_townshend</dc:creator>
      <dc:date>2019-03-12T03:09:54Z</dc:date>
    </item>
    <item>
      <title>where to deploy a ddos solution</title>
      <link>https://community.cisco.com/t5/network-security/where-to-deploy-a-ddos-solution/m-p/2367080#M308234</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="margin: 0cm; margin-bottom: .0001pt;"&gt;&lt;A href="http://en.wikipedia.org/wiki/Denial-of-service_attack"&gt;&lt;BR /&gt; http://en.wikipedia.org/wiki/Denial-of-service_attack&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin: 0cm 0cm 0.0001pt;"&gt;DDoS on IPS and you can configure MPF on the ASA to limit the amount of connections that should reach the server, this would only be if you know the expected amount.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin: 0cm 0cm 0.0001pt;"&gt;IPS link, please read DDoS information.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin: 0cm 0cm 0.0001pt;"&gt;&lt;A href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5729/ps5713/ps4077/data_sheet_c78-459520_ps6120_Products_Data_Sheet.html"&gt;http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5729/ps5713/ps4077/data_sheet_c78-459520_ps6120_Products_Data_Sheet.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin: 0cm 0cm 0.0001pt;"&gt;Tcp intercept, the ASA is but a mitigation device that will prevent the attack to get to the server but will suffer the consequences like high CPU or running low on resources for other connections that are going through. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin: 0cm 0cm 0.0001pt;"&gt;&lt;A href="http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/conns_connlimits.html"&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/conns_connlimits.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin: 0cm 0cm 0.0001pt;"&gt;Attacks such like these are normally caused from the Internal LAN but if in any case it is external, developing a contingency plan with your ISP would be best, they can track down the source as you only have access to local resources and black hole them, block the source or get in touch with other providers to track down or attack the source to kill its resources. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin: 0cm 0cm 0.0001pt;"&gt;Value our effort and rate the assistance!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Nov 2013 04:55:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/where-to-deploy-a-ddos-solution/m-p/2367080#M308234</guid>
      <dc:creator>jumora</dc:creator>
      <dc:date>2013-11-27T04:55:16Z</dc:date>
    </item>
  </channel>
</rss>

