[Pdns-users] ANY+Reflection Attacks?
Ciro Iriarte
cyruspy at gmail.com
Tue Feb 24 20:49:27 UTC 2015
Hi!, I'm seeing a lot of messages of type "Timeout from remote TCP client
10.XXX.XXX.XXX", it seems to be an attack given we have "any-to-tcp = yes".
Is this usual?, is there anyway to identify the attackers?. The service is
working fine and we have in our roadmap constant packed capture for data
mining but I find this behaviour new/interesting today :)
Any comments?
Regards,
--
Ciro Iriarte
http://iriarte.it
--
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.powerdns.com/pipermail/pdns-users/attachments/20150224/176b7cb1/attachment.html>
More information about the Pdns-users
mailing list