9-10 May 2015
"Yes means HET" - traffic increase by protocol mismatch

9 May 2015, 11:55
Mr. Peter Koch (DENIC eG)


It is common wisdom that DNS server implementations must not respond to responses to prevent a denial of service by spoofed traffic injection. We will share an observation of a system that accidentally turned responses into new requests, generating a "loop" that might go unnoticed.

Mr. Peter Koch (DENIC eG)

