[dns-operations] issue with m root server from China?

Stephane Bortzmeyer bortzmeyer at nic.fr
Thu Jan 8 14:34:21 UTC 2015


On Thu, Jan 08, 2015 at 01:37:10PM +0000,
 Shawn Hsiao <phsiao at tripadvisor.com> wrote 
 a message of 303 lines which said:

> in two of the follow ups I have received it appears they are getting
> random responses directly from the m root server.

Remember that UDP packets are trivially spoofable and there is no
proof that the packet came from this actual IP address. It can be
in-network spoofing, which is common in China.

https://labs.ripe.net/Members/pk/denic-case-study-using-ripe-atlas
http://research.dyn.com/2010/03/fouling-the-global-nest/
http://serendipity.ruwenzori.net/index.php/2010/03/26/dns-spoofing-in-china-by-stephane-bortzmeyer
https://lists.dns-oarc.net/pipermail/dns-operations/2009-June/003944.html
http://arstechnica.com/tech-policy/2010/03/china-censorship-leaks-outside-great-firewall-via-root-server/



More information about the dns-operations mailing list