[Pdns-users] DNS DDoS protection

Péter-Zoltán Keresztes zozo at z0z0.tk
Thu Sep 18 20:39:00 UTC 2014


Basically anycast is the only good solution to fight DDoS. More location you provide from more the attack will be spread. Of course bandwidth is also necessary so that the attack which goes/DC would not kill that DC.


> On 18 Sep 2014, at 23:28, Jose David Bravo A <jbravo at colombiahosting.com.co> wrote:
> 
> Hi,
> 
> We are using PowerDNS to provide authoritative DNS to 14k domains. We have many hosting servers with BIND transferring zones to our two public PowerDNS servers.
> 
> This solution is working great, but we want to be ready in case we get a big DDoS. The network of each server will not be able to support a big attack.
> 
> I think we will need to use a provider with a good anycast network and a lot of bandwidth, am I right? is there any other solution?
> 
> Thanks,
> 
> Jose D
> 
> 
> _______________________________________________
> Pdns-users mailing list
> Pdns-users at mailman.powerdns.com
> http://mailman.powerdns.com/mailman/listinfo/pdns-users

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.powerdns.com/pipermail/pdns-users/attachments/20140918/4f7ab233/attachment-0001.html>


More information about the Pdns-users mailing list