June 2018
Intermediate to advanced
368 pages
11h 1m
English
Anycast is often touted as a DDoS mitigation strategy. Having anycast can help in a DDoS because it diffuses the attack across your different POPs, and if your POPs have more aggregate bandwidth than the attack can muster, it can work, to a degree.
Depending on the amount of capacity at specific locations and where the attack traffic is originating from in relation to those POPs, some of them may fall over even if overall you have more bandwidth than the DDoS can generate.
But, even when that happens, it can be somewhat beneficial overall. If the majority of an attack is originating close to one or a few of your POPs, and those POPs go down as a result but you manage to keep your routing announcements up (it ...
Read now
Unlock full access