[dns-operations] Software that refuses an answer by QTYPE if it comes over plain UDP?

Ralf Weber dns at fl1ger.de
Tue Mar 15 08:20:58 UTC 2016


Moin!

On 15 Mar 2016, at 2:20, Mark Andrews wrote:
> A nameserver should *always* respond unless it can determine the
> query is part of a attack.  QTYPE alone is never a indicator that
> a query is part of attack.
I agree that it should always respond, however that is not the
case in the real world. There are a lot of servers out there that
think that the only valid query type is A or give other strange
answers.

While it may have nothing to do with attacks these behaviours are
out there.

So long
-Ralf



More information about the dns-operations mailing list