[68772] in North American Network Operators' Group
Re: DNS requests for 1918 space
daemon@ATHENA.MIT.EDU (Valdis.Kletnieks@vt.edu)
Tue Mar 16 13:43:35 2004
To: bill <bmanning@karoshi.com>
Cc: georger@getinfo.net (Geo.), nanog@nanog.org
In-Reply-To: Your message of "Tue, 16 Mar 2004 10:08:28 PST."
<200403161808.i2GI8S307255@karoshi.com>
From: Valdis.Kletnieks@vt.edu
Date: Tue, 16 Mar 2004 13:42:48 -0500
Errors-To: owner-nanog-outgoing@merit.edu
--==_Exmh_-1307178872P
Content-Type: text/plain; charset=us-ascii
On Tue, 16 Mar 2004 10:08:28 PST, bill said:
> http://www.nanog.org/mtg-0210/wessels.html
> has some very good information about some of the
> problems w/ leaked queries.
>
> http://as112.net/ has some mitigation stratagies.
That mitigates the issue, but fails to deal with the root cause.
One has to wonder - if a network is spewing enough broken DNS packets that it's
noticable, and it's not getting fixed, what *else* is wrong with the network.
Remember - every packet you see is a timeout happening back at the
misconfigured site.
It's like a car with one headlight out - yes, it still works, but whenever I see
one on the road, I wonder what ELSE is marginal (like brake pads)....
--==_Exmh_-1307178872P
Content-Type: application/pgp-signature
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)
Comment: Exmh version 2.5 07/13/2001
iD8DBQFAV0qocC3lWbTT17ARAq9WAJ9nsRmtAEOA/wLAu4yJnYe6qCy/nQCffqx4
768Oj7NpciBRG8QgCmTYg7w=
=tmxy
-----END PGP SIGNATURE-----
--==_Exmh_-1307178872P--