RE: DNS attacking

2011-05-25 Thread Lightner, Jeff
water@lists.isc.org] On Behalf Of Jeff Pang Sent: Wednesday, May 25, 2011 6:54 AM To: Niall O'Reilly Cc: bind-users Subject: Re: DNS attacking 2011/5/25 Niall O'Reilly : > > >Which of your DNS systems: resolvers or authoritative? > >Where is the source

Re: DNS attacking

2011-05-25 Thread Jeff Pang
2011/5/25 Niall O'Reilly : > > >        Which of your DNS systems: resolvers or authoritative? > >        Where is the source of the attack: within your (or your >        customers') networks, or out on the Internet? > Thanks. My nameservers are authoritative server only. -- Jeff Pang www.DNSbe

Re: DNS attacking

2011-05-25 Thread Niall O'Reilly
On 25 May 2011, at 07:47, Jeff Pang wrote: > Some IPs were continuely attacked my DNS systems. > Saw from the log, lots of requests from those IPs to query for the > non-exist records in the cache. > Is there a way to prevent this instead of just blocking IP with > iptables? I'm running the lates

DNS attacking

2011-05-25 Thread Jeff Pang
Some IPs were continuely attacked my DNS systems. Saw from the log, lots of requests from those IPs to query for the non-exist records in the cache. Is there a way to prevent this instead of just blocking IP with iptables? I'm running the latest BIND 9.7. thanks. Regards. -- Jeff Pang www.DNSbe