| |
| | Network Computing | Feature | Security | DDoS: Internet Weapons of Mass Destruction | Page 2 | January 8, 2001 (Site not responding. Last check: 2007-10-22) |
 | | Because of the nature of DDoS, your Internet infrastructure must be properly configured, and procedures must be in place to monitor for and respond to DDoS attacks. |
 | | Because DDoS tools change so quickly, however, the best methods are to update your IDS signatures regularly and to monitor and understand the normal traffic patterns coming into and going out of your networks, as well as patterns of activity on your network servers. |
 | | As with virus-scanning software, this method will probably not detect new variations of DDoS attacks immediately; however, most IDS vendors update their signatures frequently and have signatures available to detect trinoo, TFN and Stacheldraht traffic. |
| www.networkcomputing.com /1201/1201f1c2.html (1038 words) |
|