Presentation - Cisco Knowledge Network
Presentation - Cisco Knowledge Network
Presentation - Cisco Knowledge Network
You also want an ePaper? Increase the reach of your titles
YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.
Remote Triggered Black Holes (RTBH)Route Injected Black Hole• <strong>Network</strong> device begins sendingtraffic that is out of policy• Black/Sink Hole traffic by protocol,flow, SGT, or IP• Static RPL based config to assignblack hole nexthop• Routes Injected via BGP Flow Specpropagated to entire network• Black/Sink Hole could be initiated bya number of security devices ormanually by administrator• Traffic can be dropped at first L3network device or routed to sinkhole across network for inspectionBlack Holes injectedby network securitydevicesTraffic routed to centrallocation for loggingInfected or Attackingmachine’s traffic droppedwith Remote TriggeredBlack Hole at first routedhop© 2012 <strong>Cisco</strong> and/or its affiliates. All rights reserved. 14