[169232] in North American Network Operators' Group
Re: random dns queries with random sources
daemon@ATHENA.MIT.EDU (Joe Maimon)
Wed Feb 19 01:31:59 2014
Date: Wed, 19 Feb 2014 01:30:56 -0500
From: Joe Maimon <jmaimon@ttec.com>
To: "Dobbins, Roland" <rdobbins@arbor.net>,
"nanog@nanog.org list" <nanog@nanog.org>
In-Reply-To: <B4A28018-8E99-4771-8CC3-2444A4834623@arbor.net>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
Dobbins, Roland wrote:
>
> On Feb 19, 2014, at 1:07 PM, Joe Maimon <jmaimon@ttec.com> wrote:
>
>> There are ways to deal with it on resolvers as well, like RRL and IDS and iptables
>
> None of these things work well for recursive resolvers; they cause more problems than they solve.
>
Whatever I am doing appears to be working, at least until this cropped up.
Joe