[Pdns-users] Ignoring answer from server socket!

caruso at tiscali.com caruso at tiscali.com
Mon Feb 17 14:12:01 UTC 2014

Hello list,
I'm trying to investigate the output of my pdns recursor,
I'm getting a lot of messages like :

Ignoring answer from x.y.z.k on server socket!

where x.y.z.k are various client ip addresses.

so it seems like a client is sending an answer where the 
pdns_recursor was expecting a query, reading previous 
messages I thought that this could be a ddos/amplification
pointed at my machines.

Is somebody aware of a possible attack that gives this 
output logs ?

Am I misreading it ?

thank you


