Töma Gavrichenkov wrote on 09/08/2021 11:47:
A gigantic, gaping hole in my assertion and experience would be blown by anyone who's ready to come up with an autonomous system architecture, able to reliably process and mitigate stateful layer 7-enabled (including combined vectors) DDoS attacks towards a layer 7 network service with no (or, insignificant) impact to the legitimate users of the service, with no particular scrubbing centers likely to overload during the attack, without anycast.
no doubt about it, ddos mitigation without ddos mitigation design and infrastructure is not easy.
Nick