[Pdns-users] Queries .domain. Attack to root server?

Federico Olivieri lvrfrc87 at gmail.com
Sun Dec 13 16:03:01 UTC 2015


Hi Peter,

Thank you very much for your feedback, very useful! :)
I' ll  follow your indication and I'll let you know.

Regards,

Federico


2015-12-13 15:57 GMT+00:00 Peter van Dijk <peter.van.dijk at powerdns.com>:

> Hello Federico,
>
> On 13 Dec 2015, at 16:17, Federico Olivieri wrote:
>
> It seems quite odd to me but not sure if is a kind of attack to root
>> server. Anyone has any idea/suggestion? In case, how can I block it (was
>> thinking about and iptables filter for .domain queries)
>>
>
> If you set root-nx-trust in your recursor.conf, the Recursor will turn the
> first NXDOMAIN into a negative cache entry for the whole domain ‘TLD’,
> until that entry expires. This will severely reduce your outgoing queries
> for names under .domain.
>
> Kind regards,
> --
> Peter van Dijk
> PowerDNS.COM BV - https://www.powerdns.com/
>
> _______________________________________________
> Pdns-users mailing list
> Pdns-users at mailman.powerdns.com
> http://mailman.powerdns.com/mailman/listinfo/pdns-users
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.powerdns.com/pipermail/pdns-users/attachments/20151213/d4b2517d/attachment-0001.html>


More information about the Pdns-users mailing list