I'm studying for the sec+ exam and I came across a question about what actions would you take to mitigate vulnerbility and risk regarding dos/ddos.I've read where firewalls are vulnerable to such attacks.Then I read about a disaster recovery plan.

    I found the answer if anyone is interested.I forgot I had the MS sec+ cert book.Now this book states that configuring the firewalls and routers would mitigate such attcaks using engress filtering, ingress filtering & disable ip-directed broadcast.If anyone has this book,its on page 354 & 355.
