[dns-operations] Recently closed open resolver and reflection attacks

Jo Rhett jrhett at netconsonance.com
Wed Mar 6 17:18:26 UTC 2013


On Mar 6, 2013, at 8:36 AM, WBrown at e1b.org wrote:
> The RFCs state we should either reject during SMTP or if we 
> accept a message, we should either deliver or generate a delivery failure. 

Yes.

> Now we filter and drop spam on the floor.

So you stopped caring about e-mail delivery, huh?  Glad we don't do any business with you.

> I don't see these recursive requests as much different than spam


In the case of DNS requests I agree that dropping requests that are improper makes sense.  There's no human sitting there wondering why they didn't get a response.

-- 
Jo Rhett
Net Consonance : net philanthropy to improve open source and internet projects.






More information about the dns-operations mailing list