Speaker
Mr
Peter Koch
(DENIC eG)
Description
It is common wisdom that DNS server implementations must not respond to responses to prevent a denial of service by spoofed traffic injection. We will share an observation of a system that accidentally turned responses into new requests, generating a "loop" that might go unnoticed.
Primary author
Mr
Peter Koch
(DENIC eG)