9–10 May 2015
Okura Hotel
Europe/Amsterdam timezone

"Yes means HET" - traffic increase by protocol mismatch

9 May 2015, 11:55
20m
Heian I/II (Okura Hotel)

Heian I/II

Okura Hotel

Ferdinand Bolstraat 333 1072 LH Amsterdam
Members-only Members Session

Speaker

Mr Peter Koch (DENIC eG)

Description

It is common wisdom that DNS server implementations must not respond to responses to prevent a denial of service by spoofed traffic injection. We will share an observation of a system that accidentally turned responses into new requests, generating a "loop" that might go unnoticed.

Primary author

Mr Peter Koch (DENIC eG)

Presentation materials