[162268] in North American Network Operators' Group
Re: Open Resolver Dataset Update
daemon@ATHENA.MIT.EDU (Mark Andrews)
Mon Apr 8 03:56:21 2013
To: Tom Laermans <tom.laermans@phyxia.net>
From: Mark Andrews <marka@isc.org>
In-reply-to: Your message of "Mon, 08 Apr 2013 09:08:41 +0200."
<51626CF9.1040109@phyxia.net>
Date: Mon, 08 Apr 2013 17:55:52 +1000
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
In message <51626CF9.1040109@phyxia.net>, Tom Laermans writes:
> On 7/04/2013 19:46, Jared Mauch wrote:
> > I've continued to update my dataset originally posted about two weeks ago. Please take a moment
> and review your CIDRs which may be running an open resolver.
> >
> > I've exposed one additional bit in the user-interface that may be helpful. Some DNS servers wil
> l respond with RCODE=0 (OK) but not provide recursion. nearly 90% of the servers in the database
> provide recursion.
> What is the rationale behind listing servers not providing recursion on
> a list of open resolvers?
>
> As far as I know, responding either NOERROR or REFUSED produces packets
> of the same size.
>
> Tom
NOERROR can be a referral.
--
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742 INTERNET: marka@isc.org