[dns-operations] DNS activities in Japan

Ray Bellis ray at isc.org
Wed Jul 6 21:54:49 UTC 2016


On 06/07/2016 22:43, Jared Mauch wrote:

> Yes, I think setting a zone size limit of 1G should be ‘reasonable’ for example.

For some values of available memory vs number of zones, etc, etc.

A per-zone limitation on the amount of memory used can only provide a
certain level of protection.  A determined attacker could just configure
more zones and still make you fall over.

Ray






More information about the dns-operations mailing list