[73358] in North American Network Operators' Group
Re: DNS Blocking
daemon@ATHENA.MIT.EDU (Suresh Ramasubramanian)
Thu Aug 19 18:53:00 2004
Date: Fri, 20 Aug 2004 04:23:09 +0530
From: Suresh Ramasubramanian <suresh@outblaze.com>
To: nanog@merit.edu
In-Reply-To: <20040819213506.E46C313E14@sa.vix.com>
Errors-To: owner-nanog-outgoing@merit.edu
Paul Vixie wrote:
> and you're done. any query that anyone sends to your server for that zone
> will be sent something that will hurt them. eventually they will realize
> that it's hurting them, and they will stop.
yes but you pointed out before, deploying this would not be a good idea
when the queries are coming in from spoofed source addresses .. the best
thing for that would be to filter these out.
srs