DNS Amplification Attacks

Michael.Dillon at btradianz.com Michael.Dillon at btradianz.com
Thu Mar 23 09:35:34 UTC 2006


> > DNS looking glasses, in much the same way that we use web-form based
> > BGP or traceroute looking glasses today.
> 
> Open resolvers are far better then looking glasses to assess the state
> of DNS, and we are campaigning against them.  You can't have it both
> ways. 8-(

What is the definition of "DNS Looking Glass"?
If it is a PERL CGI script then I would agree with you.
If it is a DNS proxy that applies rate limiting
and damping then I disagree with you. 

--Michael Dillon




More information about the NANOG mailing list