Blackholes and Sinkholes

  • Blackhole

    • Drop the traffic

    • Mitigating DoS, DDoS

    • Null0 interface, /dev/null, etc

    • Dedicated devices use ASIC processors to make traffic dropping decisions.

  • Sinkhole

    • Don’t just drop all of the traffic. Dropping it into a bucket.

    • Redirect, store, and analyze.

    • Honeynet/Honeypot

Last updated