[45199] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: DNS DOS increasing?

daemon@ATHENA.MIT.EDU (just me)
Tue Jan 22 00:20:27 2002

Date: Mon, 21 Jan 2002 21:18:10 -0800 (PST)
From: just me <matt@snark.net>
To: Miquel van Smoorenburg <miquels@cistron.nl>
Cc: <nanog@merit.edu>
In-Reply-To: <a2hkrb$9sh$1@ncc1701.cistron.net>
Message-ID: <Pine.GSO.4.33L0.0201212116190.14812-100000@pants.snark.net>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Errors-To: owner-nanog-outgoing@merit.edu


On Mon, 21 Jan 2002, Miquel van Smoorenburg wrote:

  So what we need is a tunable on the caching DNS server that says
  min_allowed_ttl = 300;
  if (ttl < min_allowed_ttl) ttl = min_allowed_ttl;
  If the above becomes a problem, this will happen.

  Mike.


Some larger providers allready do this on their caching servers. It's
rather annoying, actually. I don't see anything wrong with setting a
10s TTL if I size my bandwidth and server capacity accordingly.

matto

--mghali@snark.net------------------------------------------<darwin><
   Flowers on the razor wire/I know you're here/We are few/And far
   between/I was thinking about her skin/Love is a many splintered
   thing/Don't be afraid now/Just walk on in. #include <disclaim.h>


home help back first fref pref prev next nref lref last post