Skip to Content.
Sympa Menu

dns-operations - Re: [opennic-dns-operations] Update on blocking attacks

dns-operations AT lists.opennicproject.org

Subject: Dns-operations mailing list

List archive

Re: [opennic-dns-operations] Update on blocking attacks


Chronological Thread 
  • From: Stefan Sabolowitsch <Stefan.Sabolowitsch AT felten-group.com>
  • To: "peter AT greenpete.free" <peter AT greenpete.free>
  • Cc: "dns-operations AT lists.opennicproject.org" <dns-operations AT lists.opennicproject.org>
  • Subject: Re: [opennic-dns-operations] Update on blocking attacks
  • Date: Sat, 16 Feb 2013 13:50:00 +0000
  • Accept-language: de-DE, en-US
  • Domainkey-signature: a=rsa-sha1; s=feltengroup_com; d=felten-group.com; c=simple; q=dns; h=from:message-id; b=cx5fJ7wpQx8LLitqVj5HvRqezEHXnBWWeeU6fGVnib5VMmhGyHHwun0eN4F5 7e4KybMd4u6QYfTWwI2SkvMbriGLqfLBKBv/RoYi1uezb6mS0y2X8KZ3D CNUzkbSB2aVtSQB7j1srmwgxy3dx4d5PVflw4vSYVNLg/P/dEb2RSU=;
  • Vbr-info: md=felten-group.com; mc=all; mv=vbr.emailcertification.org;

Hi all, Peter
yes i wrote a little about DNS Dumpening and is works for my perfectly.

http://nimga.de/f/VGfNd.png

you see it's a little windy (1200 dumps per second) an i have seen more as 28k / sec. =8-)
but no problem for my dns_dumpening help my :)
The only thing i need, is a good perimeter firewall for example Juniper netscreen (udp flooding protection, src-dst limiting etc.) and DNS Dumpening.
No more fighting with a local firewall (DNS protection), blacklist IPS, IDS ......

Best regards Stefan





Am 15.02.2013 23:13, schrieb Peter Green:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Sorry to hear of the attacks Jeff, and thanks for posting those IP
table rules.

It made me think, is there one single place where all this info' goes?
I'm thinking of the wiki.

I can only find...

http://wiki.opennicproject.org/ddosBlock
http://wiki.opennicproject.org/AutoBlockRules
http://wiki.opennicproject.org/DNSBlockList

And I remember there being more regarding 'DNS Dampening'.

It would be great of all this were in one place! :-)

I'd like to be the one to offer collating this info' but this kind of
thing is just a bit ahead of me and so don't really think I'm the best
person to do it. :-/

Peter
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/

iQEcBAEBAgAGBQJRHrLOAAoJEPBKqeCz72c5AUIH+wQzszoaZN++lUwOPENb3jKD
c4rw4o9vLoB9AeFFDn4D0MUayuRRgn+Vtt6pgKUv2/+d4pIupciGj0sEnEuaQZgN
IGu5G3je3qqlBOVa5Ib6LpboLSE+U2ZOH/56og/trFmm3T5Dw0SmcINFg8JMYYTd
9c/MJLvHZ6Xi9T18BVfyY5f9w6VqqSGgzRNMHhOoc/+dyCh9Tv6U2KhbjaiNh0kY
mzU3ar6xYLJs3cYi1hqfmKnrb69WzZeFG2Y+H7SoFQIlKgdwtmS/D41sJ9+pKwIb
XcOFQxk5CvqoO4Kh5jwU3Ft35P/HMlOIaTrnJ9JDNnGiSAb8dSfNhibQB2Umy3Y=
=eyFP
-----END PGP SIGNATURE-----

----
To unsubscribe, email dns-operations-unsubscribe AT lists.opennicproject.org






Archive powered by MHonArc 2.6.19.

Top of Page