Hacker News new | ask | show | jobs
by Xurinos 5470 days ago
Can somebody explain to me why investing in something like CiscoGuard does not obsolete this kind of attack? Eight years ago I heard about this technology, the ability to drop packets at line speed, and I have been confused since that DDOS has remained effective. I understand cost barriers, but again, that was eight years ago.
1 comments

My understanding is that Cisco has EOL'd Guard.

Modern switches can also drop packets based on reasonably complex ACLs (which in practice is much of what DOS products did). The real cost of DDoS attacks is the focused engineering time required to design and implement mitigation for each and every one of them.