Skip to Content.
Sympa Menu

dns-operations - [opennic-dns-operations] Should I act on bad notify attempts?

dns-operations AT lists.opennicproject.org

Subject: Dns-operations mailing list

List archive

[opennic-dns-operations] Should I act on bad notify attempts?


Chronological Thread 
  • From: Steve Snyder <swsnyder AT snydernet.net>
  • To: OpenNIC DNS <dns-operations AT lists.opennicproject.org>
  • Subject: [opennic-dns-operations] Should I act on bad notify attempts?
  • Date: Sat, 09 Feb 2013 08:56:52 -0500

There are a handful of non-Master DNS servers that constantly try to notify my server. Should I act on this (block via iptables, etc.) or just accept that there will always be misconfigured servers somewhere and ignore them?

Thanks.

-------------------------------------

# grep "refused notify from non-master" /var/log/named.log* | cut -d ' ' -f10 | cut -d '#' -f1 | sort | uniq -d -c | sort -n -r | head -n 10
7299 173.160.58.202
3350 69.164.196.21
3314 2600:3c00::2:ffff
2082 2001:470:f032:10::1
2079 2001:470:1f10:c6::20
2042 2001:470:f032:10::3
2026 2001:470:f032:10::2
1771 2001:470:f032:10::101
1521 72.14.183.109



Archive powered by MHonArc 2.6.19.

Top of Page