¨Keep
systems patched up-to-date
¨Install
adequate bandwidth, redundant paths using
different ISPs, and traffic shaper
¨Install IDS tools that can alert you
when a DDoS attack start
¨Install egress anti-spoof filters on
external router to thwart DDoS zombie on your network from
spoofing source IP address