[169227] in North American Network Operators' Group
Re: random dns queries with random sources
daemon@ATHENA.MIT.EDU (Joe Maimon)
Wed Feb 19 01:07:43 2014
Date: Wed, 19 Feb 2014 01:07:16 -0500
From: Joe Maimon <jmaimon@ttec.com>
To: "Dobbins, Roland" <rdobbins@arbor.net>
In-Reply-To: <F9483AE5-DA5C-4D08-91D4-DF8E91ED9847@arbor.net>
Cc: "nano >> North American Networking and Offtopic Gripes List"
<nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
Dobbins, Roland wrote:
>
> On Feb 19, 2014, at 12:44 PM, Joe Maimon <jmaimon@ttec.com> wrote:
>
>> Get back to me when the same cant be done with auth servers.
>
> There are ways to deal with it on authoritative servers, like RRL.
>
There are ways to deal with it on resolvers as well, like RRL and IDS
and iptables and see google for so more examples.