[dns-operations] Problem with some root name servers? (L and G)

Duane Wessels wessels at packet-pushers.com
Wed Feb 7 17:34:56 UTC 2007



On Wed, 7 Feb 2007, Marc Sachs - SANS ISC said:

> Were any of the root operators able to capture packets during the attacks?
> We'd like to compare some pcaps against malformed DNS queries we saw last
> year to see if there is any similarity.

I did some breif inspection with tcpdump.  What I saw was random
garbage in the UDP payload.  The only thing "DNS" about the 
packets were their destination port.

Duane W.



More information about the dns-operations mailing list