Can i implement BGP flowspec

This question is for general information about BGP flowspec, Can i implement BGP flowspec to stop DDoS? RTBH isn't what we want because it blackholing all traffic, we want RTBH at Layer 4 level where we can tell BGP to blackhole destination port 500.

  • Big question is do i need support from my ISP or peer ISP?
  • Do i need special equipment to implement?
  • Or this service is something only ISP can do and we can use as a customer?

I did google and found all short of answer but still there are some basic question i have in my mind which i thought i will get answer here.

https://www.netcraftsmen.com/bgp-flowspec-step-forward-ddos-mitigation/

Leave Your Comment

Leave a Reply