[dns-operations] DNS deluge for x.p.ctrc.cc
Nicholas Suan
nsuan at nonexiste.net
Wed Mar 1 18:49:11 UTC 2006
Geo. wrote:
> Now the bots will simply spoof on the inside ISP network and use the local
> dns servers. The way to stop that is to run a firewall between the dns
> servers and their local clients (something almost nobody is going to do)
>
Actually, the way to stop that is to place the filters on the router
between the ISP and the client. Putting filters on every router isn't
really necessary if you filter at the edge, instead of trying to do it
somewhere in the middle. Most networks that I've seen, do the filtering
there anyway.
More information about the dns-operations
mailing list