today got contacted by my hosting provider about an incoming DDOS:
"Dear Sir or Madam
Simple Service Discovery Protocol (SSDP) is a network protocol which
is used to search for UPnP applicances on the network. SSDP is generally
used over port 1900/udp.
During the past few months, systems which respond to SSDP requests
from the Internet have been increasingly misused for performing DDoS
reflection/amplification attacks.
In the course of the Shadowserver 'Open SSDP Scanning Project', systems
are identified which respond to SSDP requests from the Internet.
These systems may potentially be misused for carrying out DDoS attacks
if no other countermeasures have been implemented.
We are sending you the following list of affected systems in your net
area. The timestamp shows when the system was checked and when it
responded to an SSDP request from the Internet.
We kindly request that you examine the situation and take measures to
safeguard SSDP services on the systems concerned and inform your customers
accordingly.
My system was completely new ubuntu 14.04 with only subsonic running.
What i'm now missing is a setting / startup switch to disable SSDP requests or explanation that it is recommended to setup a firewall if connected directly to the internet

