[93616] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

RE: DNS - connection limit (without any extra hardware)

daemon@ATHENA.MIT.EDU (Geo.)
Fri Dec 8 12:09:03 2006

From: "Geo." <geoincidents@nls.net>
To: <nanog@nanog.org>
Date: Fri, 8 Dec 2006 11:52:52 -0500
In-Reply-To: <Pine.LNX.4.21.0612080959460.1965-100000@linuxbox.org>
Errors-To: owner-nanog@merit.edu


> Actually, reading your reply (which is the same as my own, pretty much), I
> figure the guy asked a question and he has a real problem. Assuming he
> doesn't want to clean them up is not nice of us.

Infected machines (bots) will cause a lot more than just DNS issues. Issues
like this have a way of getting worse all by themselves if not addressed.

Anyway, to play nice.. how about using a router to dampen traffic much like
icmp dampening? Would it be possible to do DNS dampening?

Geo.



home help back first fref pref prev next nref lref last post