[dns-operations] ANY queries and rate limiting

Jim Reid jim at rfc1035.com
Sun Jun 10 12:20:11 UTC 2012


On 10 Jun 2012, at 12:57, Stephane Bortzmeyer wrote:

> What about forcing TCP for ANY requests only?

It would be worth measuring and testing IMO. I doubt it would be a  
change for the better. Forcing kernels to maintain zillions of PCBs  
for short-lived TCP connections would be very bad. Though I suppose  
these could be rate-limited just as easily as floods of unwanted  
inbound UDP queries.




More information about the dns-operations mailing list