Hi guys,
Many times clients find their website down. On contacting the web host they come to know that their website is down because of DDOS attack. What exactly is this Distributed-Denial-of-Service attack? Marson(2002) states that distributed DoS attack occurs when a hacker hijacks machines across the Internet and uses them to send a flood of requests to a server until it becomes overwhelmed and stops functioning.
I am just wondering is ICMP blocking only the solution for this?
Thats a real hard one to say. As far as I know there is very little that can actually be done to prevent or combat this asside from trying your best to route out the source and alert the ISP's involved.
As cptnwinky stated, it's hard to say and really depends on the level of attack. Sometimes if the attack is small enough, just taking the machine offline for a while or null routing the IP is the best way out.