Akamai: How They Fought Recent DDoS Attacks
yootje writes "Infoworld is running an interesting article about Akamai and the DDoS attack that hit the network of Akamai Tuesday. According to this article one of the defenses of Akamai is the big diversity of their hardware: 'We deliberately use different operating systems, different name server implementations, different kinds of routers, different kinds of switches, different kinds of CPUs, and especially, different operational procedures.' So says Paul Vixie, architect of BIND and president of the ITC." Yootje points to another article on this subject as well, this one at Internetnews.com. Update: 07/07 19:38 GMT by T : Note that Vixie's quote here is actually presented out of context; he was commenting by way of contrast on the diversity of the root DNS servers, not Akamai's content-serving system.
"We wired a million dollars into the attackers' Swiss account."
That's shocking!
'We deliberately use different operating systems, different name server implementations, different kinds of routers, different kinds of switches, different kinds of CPUs, and especially, different operational procedures.'
Wow, your sys admins and help desk must LOVE supporting that!
Good quote, too many chars. Seriously, the slashdot 120 char limit sucks!
They've achieved deliberately what happens naturally in a lot of other companies.
When you say "It didn7 w0rk" are you talking about the "Post Anonymously" checkbox?
Just askin you big hacker, you.
Good quote, too many chars. Seriously, the slashdot 120 char limit sucks!
Just ask MS, they will tell you.
This is not the sig line you are looking for... -- Old Jedi Sig Line Trick
a Mac running Classic on a beefy box
You mean like a Quadra 950 (~35lbs.) or a pallet of hamburger helper?
Rampant Ninja related crimes these days...Whitehouse is not the exception
couldn't you just link to them on slash dot
that's been proven to be an effective, system independent DoS attack (even if the attack was unintentional or brought about by the owner)
The Neo-Bohemian Techno-Socialist
Is that like using Windows 98 and Windows ME?
It sounds like a recipe for success!
Boss: "Why did nearly half our service go down Friday?"
CTO: "Actually, sir, the real question is why did we lose less than half of our service. The answer is that I've, uh, been strategically using different systems and components throughout the enterprise on purpose to prevent drastic losses. No one else could have even kept 10% of their machines up under that DDOS."
Boss: "I knew I could count on you for the right PR spin job. Go back and think up some other good excuses."
-Adam
Do you have to read the article to get your topic posted on /. or can you just put together random quotes that seem interesting?
The editors don't read the articles, so why should the submitters be subjected to the same burden?
Want to improve your Karma? Instead of "Post Anonymously", try the "Post Humously" option.
I thought we were disorganized here where I work, but it turns out we were just throwing up a good defense.
'We deliberately use different operating systems, different name server implementations, different kinds of routers, different kinds of switches, different kinds of CPUs, and especially, different operational procedures.'
"Hey I'm in!"
ver^M
MS DOS 6.22
"wtf?"
Two roads diverged in a wood, and I - I took the one the bus load of girls just went down.
'We deliberately use different operating systems . . . .'
They called me crazy for using Windows 95, 98, 2000, CE and ME . . . I'm invincible! Bwahahaha!
somedays I don't even read the blurb. Just glance at the title and troll accordingly.
I'm sorry, next time I will read the article ten times before I post...
My photo's.
No, no, no... it's just pronounced "Paul Vixie" but the correct spelling is V-I-N-T C-E-R-F.
I have a feeling it was more like,
(BOFH types RETURN, followed by)
"Oh Shit!"
Give a man a fish and you have fed him for today. Teach a man to fish, and he'll say "WHERE'S MY FISH, YOU IDIOT?"
(Yes, reliable. It only crashes when you are doing something, so it gets rebooted often enough ;)
That's it. My reading comprehension is gone. I'm going to bed now and hopefully not dream of anything remotely related to this Daliesque image.