# The Attacker in the Gap — ECMP Salt-Collision DoS A live lab and study of a link-flooding attack on ECMP (Equal-Cost Multi-Path) load balancing: guess a switch's hash salt and a single host — no botnet — crafts flows that all hash onto one deep fabric link, starving a victim while slipping under the rate limits built to stop volumetric floods. The defence is to rotate the salt faster than it can be reconstructed. Every salt is drawn from QEaaS quantum entropy and ships a signed provenance receipt. ## What it is - Interactive k=6 fat-tree lab showing ECMP load balancing and the precision collision attack - Flow-level simulation over the real SHA-256 ECMP hash (JS/Python parity-checked) - A computable salt-rotation cadence as a moving-target defence - QEaaS-supplied, attestable quantum entropy for every per-switch salt ## Pages - Home / live lab: https://ecmp.peterjas.sk/ - Agent integration: https://ecmp.peterjas.sk/agents - Expanded index: https://ecmp.peterjas.sk/llms-full.txt ## Entropy provider (QEaaS) — agent & MCP discovery - Agent manifest: https://api.qeaas.eu/.well-known/agent.json - MCP discovery: https://api.qeaas.eu/.well-known/mcp.json - MCP endpoint (JSON-RPC 2.0, POST): https://api.qeaas.eu/mcp - Tool descriptors: https://api.qeaas.eu/v1/agent/tools - OpenAPI: https://api.qeaas.eu/openapi.json