Guest

Secure Fail-Open Peering

Introduction

Defeat Threats with Fail-Open Peering

Secure fail-open peering uses Netflow analysis and remotely triggered black hole (RTBH) filtering to create a peering architecture that is highly resilient and able to react quickly and dynamically to engage threat mitigation devices when threats are detected.

Peering architectures that include mitigation devices as a normal part of the data path are susceptible to decreased performance and the possibility that failure of a mitigation device will close the peering connection to all traffic.

The secure fail-open peering architecture addresses both performance and reliability problems by moving mitigation devices out of the normal data path and rerouting only traffic suspected of containing a threat – as determined by Netflow analysis – to the mitigation devices using RTBH.

More Resources