Defenses against attacks
Filtering routers: filtering all packets entering and leaving the network.
Disabling IP broadcasts: host computers can no longer be used as amplifiers in certain attacks.
Applying security patches: updating host computers with the latest security patches and techniques.
Disabling unused services: if network services are unneeded or unused, they should be disabled.
Performing intrusion detection: by monitoring traffic patterns, a network can determine when it is under attack.