Edward Lewis <edward.lewis at icann.org> wrote:

> If the worry is simply amplified reflective attacks, I don't
> see this tradeoff benefitting anyone.

Attacks that use authoritative servers directly can be dealt with by RRL.
It's more tricky to deal with attacks that use large numbers of recursive
servers for amplification, because then the authoritative server will get
a large number of queries from lots of legitimate clients, which RRL is
designed to allow. Minimal ANY responses make these recursive servers go
away happy without retrying over TCP and using up the server's TCP quota.

