On Fri, Sep 06, 2013 at 09:44:34PM +0300,
 Haya Shulman <haya.shul...@gmail.com> wrote 
 a message of 232 lines which said:

> We studied the IPID randomisation on the name servers (not the resolvers).

Just a warning: it's IPID _unpredictability_ (for a blind attacker)
which is important. Randomisation can be bad because it creates the
risk of IPID duplication (see RFC 6274 but RFC 6056, while talking
about a different field, may be interesting too).
_______________________________________________
dns-operations mailing list
dns-operations@lists.dns-oarc.net
https://lists.dns-oarc.net/mailman/listinfo/dns-operations
dns-jobs mailing list
https://lists.dns-oarc.net/mailman/listinfo/dns-jobs

Reply via email to