Cloudlflare is back to describe their latest DDoS mitigation system. Many lessons learnt.
In this talk, Arthur Fabre will focus on the implementation of the Cloudflare XDP solution. Perf-based packet sampling is used to detect the attack. The followup mitigation subsystem automatically generates eBPF code in response to attacks.
https://netdevconf.org/0x13/session.html?talk-XDP-based-DDoS-mitigation
cheers, jamal