[dns-operations] TTL=0; Last known good answer (Re: dns retries amplify attack)

Matthew Pounsett matt at conundrum.com
Tue Oct 25 22:08:59 UTC 2016


On 25 October 2016 at 17:55, Paul Vixie <paul at redbarn.org> wrote:

>
>
> especially if it was refreshed every 1.8 hours. you gotta do the math
> before you decide that sub-day max-ttl isn't long enough. "for what?"
>
> to support the existing install-base.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.dns-oarc.net/pipermail/dns-operations/attachments/20161025/917a2c64/attachment.html>


More information about the dns-operations mailing list