SlideShare a Scribd company logo
1 of 2
Download to read offline
2 of 3 Dyn’s Three-Phased DDoS Mitigation Strategy
INTERNET
PERFORMANCE.
DELIVERED.
SOLUTIONS OVERVIEW
Dyn’s Three-Phased DDoS
Mitigation Strategy
There are distinct benefits to including Dyn as part of your DDoS mitigation strategy. Dyn takes a three-
phased approach to deliver a comprehensive DDoS mitigation strategy that incorporates planning,
mitigation, and a full postmortem.
Planning
Dyn’s routing method and operational architecture are the first line of defense in mitigating DDoS attacks
against our clients. The Anycast network allows multiple, identical, globally deployed DNS servers to
advertise the same IP address. Dyn connects from 18 locations to four Anycast nameservers.
Dyn monitors DDoS hotspots to ensure appropriate coverage for those regions. Dyn’s routing strategy also
tempers the nature of the attack itself. When DDoS activity is discovered, traffic can be shifted to a better
provisioned site.
Dyn’s next layer of defense is reducing the risk to your assets in a multitenant environment. Dyn
employs a nameserver pooling strategy which reduces the number of accounts on each nameserver
announcement.
Mitigation
Before you can mitigate an attack, you need to know when an attack is happening. Dyn provides a fully
staffed global Network Operations Center (NOC), which monitors network activity and automatically
sends notifications when a threat threshold is met. If this occurs, Dyn can trigger automatic packet capture
and alert emails which aid in determining the size and scope of an attack and can yield information
regarding what is actually being attacked. Other alerts include bandwidth and various plugin timeouts,
which again can serve as an early warning for an attack.
We hold transparency as a core pillar of our business philosophy at Dyn. As soon as an attack is determined,
Dyn creates an Incident Report for internal stakeholders, and posts a report on dynstatus.com.
Utilization of tools that display DNS query sources and that can be run from various instances to ascertain
the usage of adjacent DNS servers helps Dyn examine the size and scope of an attack. This strategy can
provide information about what is being queried and how many requests are being made and helps Dyn
determine if the attacks are occurring in or out of protocols like UDP or TCP, versus IP Fragments.
Another method of DNS DDoS mitigation that Dyn employs is developing and deploying firewall rules to
block incoming traffic based on specified criteria such as, source IP, source TTL, and so on.
Upstream from the network, Dyn and its transit providers can perform filtering with both hardware and
software utilities on criteria matching the attack vector to scrub the traffic inbound to our network.
Utilizing these devices enables Dyn to perform deep packet inspection to analyze incoming packets, and
only allow certain requests through to our network. This will usually eliminate the attack threat altogether.
dyn.com/contact Regional HQ: London, UK / Sydney, AUS / San Francisco, CAGlobal HQ: Manchester, NH USA3 of 3 @dyn
INTERNET
PERFORMANCE.
DELIVERED.
SOLUTIONS OVERVIEW
The final step of BGP “black-holing” can also be utilized to remove a resource from the network either
from a local attack hotspot, or on a wider range.
Post Mortem
Any time a DNS DDoS mitigation takes place, it is very important that your business continuity and
network incident response plans are employed and held to a detailed retrospective. Attacks will often
help Dyn and your team uncover information like specific protocols and tactics employed by the attackers
and can be added to your team’s playbooks and forensics strategies to forestall the impact of future
attacks.
Dyn creates an Incident Report at the first identification of an attack in order to provide the best post
mortem coverage. Should an incident increase in business impact and visibility, all parties have full insight
into what has happened and what is occurring.
Keeping detailed records is necessary for a successful post mortem; packet captures can engender new
filtering rules, playbooks can be reviewed and altered as needed, and new processes can be put into place
as needed.
Conclusion
Dyn can help you quickly identify and defend against DDoS attacks and provides mitigation and postmortem
strategies to ensure your online infrastructure is under control and available.
About Dyn
Dyn is a cloud-based Internet Performance company. Dyn helps companies monitor, control, and optimize
online infrastructure for an exceptional end-user experience. Through a world-class network and unrivaled,
objective intelligence into Internet conditions, Dyn ensures traffic gets delivered faster, safer, and more
reliably than ever.

More Related Content

Featured

How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthThinkNow
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfmarketingartwork
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024Neil Kimberley
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)contently
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024Albert Qian
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsKurio // The Social Media Age(ncy)
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Search Engine Journal
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summarySpeakerHub
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next Tessa Mero
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentLily Ray
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best PracticesVit Horky
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project managementMindGenius
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...RachelPearson36
 
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...Applitools
 
12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at WorkGetSmarter
 

Featured (20)

How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental Health
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
 
Skeleton Culture Code
Skeleton Culture CodeSkeleton Culture Code
Skeleton Culture Code
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search Intent
 
How to have difficult conversations
How to have difficult conversations How to have difficult conversations
How to have difficult conversations
 
Introduction to Data Science
Introduction to Data ScienceIntroduction to Data Science
Introduction to Data Science
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best Practices
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project management
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
 
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
 
12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work
 
ChatGPT webinar slides
ChatGPT webinar slidesChatGPT webinar slides
ChatGPT webinar slides
 

Solutions Overview- Three-Phased DDoS Mitigation

  • 1. 2 of 3 Dyn’s Three-Phased DDoS Mitigation Strategy INTERNET PERFORMANCE. DELIVERED. SOLUTIONS OVERVIEW Dyn’s Three-Phased DDoS Mitigation Strategy There are distinct benefits to including Dyn as part of your DDoS mitigation strategy. Dyn takes a three- phased approach to deliver a comprehensive DDoS mitigation strategy that incorporates planning, mitigation, and a full postmortem. Planning Dyn’s routing method and operational architecture are the first line of defense in mitigating DDoS attacks against our clients. The Anycast network allows multiple, identical, globally deployed DNS servers to advertise the same IP address. Dyn connects from 18 locations to four Anycast nameservers. Dyn monitors DDoS hotspots to ensure appropriate coverage for those regions. Dyn’s routing strategy also tempers the nature of the attack itself. When DDoS activity is discovered, traffic can be shifted to a better provisioned site. Dyn’s next layer of defense is reducing the risk to your assets in a multitenant environment. Dyn employs a nameserver pooling strategy which reduces the number of accounts on each nameserver announcement. Mitigation Before you can mitigate an attack, you need to know when an attack is happening. Dyn provides a fully staffed global Network Operations Center (NOC), which monitors network activity and automatically sends notifications when a threat threshold is met. If this occurs, Dyn can trigger automatic packet capture and alert emails which aid in determining the size and scope of an attack and can yield information regarding what is actually being attacked. Other alerts include bandwidth and various plugin timeouts, which again can serve as an early warning for an attack. We hold transparency as a core pillar of our business philosophy at Dyn. As soon as an attack is determined, Dyn creates an Incident Report for internal stakeholders, and posts a report on dynstatus.com. Utilization of tools that display DNS query sources and that can be run from various instances to ascertain the usage of adjacent DNS servers helps Dyn examine the size and scope of an attack. This strategy can provide information about what is being queried and how many requests are being made and helps Dyn determine if the attacks are occurring in or out of protocols like UDP or TCP, versus IP Fragments. Another method of DNS DDoS mitigation that Dyn employs is developing and deploying firewall rules to block incoming traffic based on specified criteria such as, source IP, source TTL, and so on. Upstream from the network, Dyn and its transit providers can perform filtering with both hardware and software utilities on criteria matching the attack vector to scrub the traffic inbound to our network. Utilizing these devices enables Dyn to perform deep packet inspection to analyze incoming packets, and only allow certain requests through to our network. This will usually eliminate the attack threat altogether.
  • 2. dyn.com/contact Regional HQ: London, UK / Sydney, AUS / San Francisco, CAGlobal HQ: Manchester, NH USA3 of 3 @dyn INTERNET PERFORMANCE. DELIVERED. SOLUTIONS OVERVIEW The final step of BGP “black-holing” can also be utilized to remove a resource from the network either from a local attack hotspot, or on a wider range. Post Mortem Any time a DNS DDoS mitigation takes place, it is very important that your business continuity and network incident response plans are employed and held to a detailed retrospective. Attacks will often help Dyn and your team uncover information like specific protocols and tactics employed by the attackers and can be added to your team’s playbooks and forensics strategies to forestall the impact of future attacks. Dyn creates an Incident Report at the first identification of an attack in order to provide the best post mortem coverage. Should an incident increase in business impact and visibility, all parties have full insight into what has happened and what is occurring. Keeping detailed records is necessary for a successful post mortem; packet captures can engender new filtering rules, playbooks can be reviewed and altered as needed, and new processes can be put into place as needed. Conclusion Dyn can help you quickly identify and defend against DDoS attacks and provides mitigation and postmortem strategies to ensure your online infrastructure is under control and available. About Dyn Dyn is a cloud-based Internet Performance company. Dyn helps companies monitor, control, and optimize online infrastructure for an exceptional end-user experience. Through a world-class network and unrivaled, objective intelligence into Internet conditions, Dyn ensures traffic gets delivered faster, safer, and more reliably than ever.