Re: Adaptation response ton ANY queries

2023-11-03 Thread avanpevenaeyge
Your solution works thank you! I didn't know that the default behavior of the dig command with an ANY query is to respond with TCP. Message d'origine De : Marco Date : 3/11/23 12:23 (GMT+01:00) À : avanpevenaeyge , bind-users@lists.isc.org Objet : Re: Adaptation re

Re: Adaptation response ton ANY queries

2023-11-03 Thread Björn Persson
Marco wrote: > Try > dig example.org +notcp to force a UDP lookup. I find that I need to also use +ignore to prevent Dig from using TCP. (That option has a very bad name.) Björn Persson pgpdJ4lEIrrnl.pgp Description: OpenPGP digital signatur -- Visit https://lists.isc.org/mailman/listinfo/bin

Re: Adaptation response ton ANY queries

2023-11-03 Thread Marco
Am 03.11.2023 schrieb avanpevenaeyge : > Ok but what about the response to ANY queries on ubuntu 22.04? I > tried to do some ANY queries from my client but the server always > responds with TCP. Is it a security measure to prevent DNS > amplification attack? Please tell us how you do the lookup.

Re: Adaptation response ton ANY queries

2023-11-03 Thread Marco
Am 03.11.2023 schrieb avanpevenaeyge : > However, I know that BIND is designed to respond to ANY requests via > TCP for security reasons. So my question is: how can I make my BIND9 > server respond to ANY queries via UDP and not TCP for the purposes of > my thesis? Thank you in advance for your re

Adaptation response ton ANY queries

2023-11-03 Thread avanpevenaeyge
Hello, I'm a student in the Master in Cybersecurity organized by the Free University of Brussels. As part of my Master's thesis, I have to implement a DNS amplification scenario within a Cyber Range. Before doing so, I need to measure the amplification rate for each DNS request. However, I know