[dns-operations] Recently closed open resolver and reflection attacks

nudge nudgemac at fastmail.fm
Fri Mar 8 02:33:17 UTC 2013

On Thu, Mar 7, 2013, at 09:29 AM, nudge wrote:
> On Wed, Mar 6, 2013 Vernon Schryver wrote:
> ...
> > I know of no way to use authentication on end user computers except
> > by something like installing a forwarding, caching DNS server on every
> > end user computer.  
> What would be the effects on DNS infrastructure operations if for
> example several million Apple laptops were configured this way in a
> short time frame ?

I can put this a better way. Speak up now operators or forever hold your
peace if millions of recursive devices wash up on the iShore. Ready or
not ?

