12-15-2006 03:13 AM - edited 03-10-2019 03:22 AM
Can some one on the list point me to a Cisco case study where IPS is successfully used as a detection and mitigation device in dos attacks?
Is IPS necessary the best way for protecting the ingress of the network from DDOS or DOS ATTACKS?
What other ways are there to guard the internet bandwidth from Denial of service?
12-15-2006 09:28 AM
Effectively protecting against a DDoS at the endpoint is impossible since your bandwidth would already be overwhelmed at that time. To protect against a DDoS you'll need the ISP's assistance (so they can re-route & scrub the attack before it floods your ingress point(s)).
Plug: I work for AT&T and we provide a DDoS mitigation service. Traffic inbound for your ingress point(s) are re-routed on the AT&T backbone to a scrubbing facility. After the 'bad' traffic is scrubbed, the 'good' traffic is routed back to you. I'm vastly oversimplifying but the point is your ingress point(s) are not overwhelmed even in the face of an attack which ordinarily would take you down.
12-19-2006 06:32 AM
Hi,
Have a look at Cisco's Guard DDoS Mitigation Appliances:
http://www.cisco.com/en/US/products/ps5888/index.html
HTH
Andrew.
12-19-2006 06:40 AM
Check following Cisco IPS 4200 Series Sensors
Case Studies
http://www.cisco.com/en/US/products/hw/vpndevc/ps4077/prod_case_studies_list.html
M.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide