Dne 31. 07. 24 v 19:18 Paul Wouters napsal(a):
Rate limit these at 10/sec ? Will allow random cases to work but will stop ddos.
Such ideas are almost always bad. This only leads to situation when the
resultion of particular zone sometimes works and sometimes doesn't,
being undebuggable. And any adversary can easily cause it to never work,
just by sending those 10 qps themselves.
Libor
_______________________________________________
DNSOP mailing list -- dnsop@ietf.org
To unsubscribe send an email to dnsop-le...@ietf.org