[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]


To: Markus Stumpf <maex-lists-dns-ietf-dnsop@Space.Net>
Cc: Robert Elz <kre@munnari.OZ.AU>, Edward Lewis <edlewis@arin.net>, <dnsop@cafax.se>
From: Roy Arends <Roy.Arends@nominum.com>
Date: Thu, 27 Jun 2002 12:26:23 -0700 (PDT)
In-Reply-To: <20020627202517.M41555@Space.Net>
Sender: owner-dnsop@cafax.se
Subject: Re: is this proper behavior?

On Thu, 27 Jun 2002, Markus Stumpf wrote:

> On Tue, Jun 25, 2002 at 01:29:32PM +0700, Robert Elz wrote:
> > Sounds like djb's "thing" - his opinion was that if you asked his server
> > for something for which it hadn't been configured, it would simply ignore
> > you (no answer of any kind).
>
> Yeah! Kewl isn't it?
> Script kiddies send queries for MX hotmail.com from spoofed addresses
> and it doesn't work (i.e. 29 bytes query vs 507 bytes answer would be a
> multiplicator of about 17 and is even more effective as a ping to the
> broadcast address of a /28).

No, its not. 29 bytes vs 507 bytes is 1 packet vs 1 packet. broadcast
related DoS is 1 packet vs N packets.

You're comparing apples and oranges.

Roy Arends
Nominum



Home | Date list | Subject list