water@lists.isc.org] On Behalf Of Jeff
Pang
Sent: Wednesday, May 25, 2011 6:54 AM
To: Niall O'Reilly
Cc: bind-users
Subject: Re: DNS attacking
2011/5/25 Niall O'Reilly :
>
>
>Which of your DNS systems: resolvers or authoritative?
>
>Where is the source
2011/5/25 Niall O'Reilly :
>
>
> Which of your DNS systems: resolvers or authoritative?
>
> Where is the source of the attack: within your (or your
> customers') networks, or out on the Internet?
>
Thanks. My nameservers are authoritative server only.
--
Jeff Pang
www.DNSbe
On 25 May 2011, at 07:47, Jeff Pang wrote:
> Some IPs were continuely attacked my DNS systems.
> Saw from the log, lots of requests from those IPs to query for the
> non-exist records in the cache.
> Is there a way to prevent this instead of just blocking IP with
> iptables? I'm running the lates
Some IPs were continuely attacked my DNS systems.
Saw from the log, lots of requests from those IPs to query for the
non-exist records in the cache.
Is there a way to prevent this instead of just blocking IP with
iptables? I'm running the latest BIND 9.7. thanks.
Regards.
--
Jeff Pang
www.DNSbe
4 matches
Mail list logo