For issue DDoS attack that. We have standard blackhold with ip attacker. So if the customer or you notify us we will be analyze source and destination ip.
- In case customer of KIRZ is Attacker we will update to them for solve problem. So if happen the effect to core network KIRZ we will cut circuit(Close routing, Unplug cable LAN) now.
- In case outsite is Attacker we will find source and destination ip. So will be inform with customer KIRZ for check the server. If not effect with core network of KIRZ we will use time with customer 30 minutes for solve problem. If still can't solve we will block ip customer 30 minutes in first step, 60 minutes for second,..... step. So if happen the effect to core network KIRZ we will inform with customer and cut circuit(Close routing, Unplug cable LAN) now.
BR,
Sutiwat