2016-05-14

DDoS Attacks Prevalent

I once could expect a distributed denial of service (DDoS) attack intermittently. The infuriating aspect of this scathing attack revolves around others thinking they have a right to impede bandwidth because of their inability to exploit you otherwise.

In other words, effective exploit prevention is sometimes met with brute force attempts to tie up hardware and software resources because someone needs something to do.

This resulted in my shucking of the "oldie but goodie" netopias for newer routing hardware with built-in countermeasures and an alteration of my firewalling scheme to prevent attackers from gaining any datapoints in their operations.

Now I simply discard packets rather than reject them and I have my router set to proactively protect my stuff instead of simply providing my formerly wide-open frontier.

Denial of Service down the pipe

The DMZ on a network is the most unfriendly spot in the circuit. It's not for the uninitiated if you have trade secrets, data stores, and the information of customers to protect.

I decided late in the game not to toy with the hackers ... I used to but the resulting back scatter traffic is resented by many other networks with which you may wish to interact. Rather than suffer their wrath I simply dummy up and it's made all the difference in my cohabitation.

Sometimes I wonder why I was so compelled to mess with a group I'd just as soon firewall up front anyway. I think it all stems from a inherent scrappy nature I picked up in the Navy.