Re: squirting spray foam into the crack at the bottom of the BAW

Hugo Monteiro <[email protected]>
Newsgroups gmane.network.djbdns
Message-ID <[email protected]>
On 03/16/2010 11:00 AM, George Barwood wrote:
> ----- Original Message -----
> From: "Maciej Żenczykowski"<[email protected]>
> To: "Hugo Monteiro"<[email protected]>
> Cc:<[email protected]>
> Sent: Tuesday, March 16, 2010 10:20 AM
> Subject: Re: squirting spray foam into the crack at the bottom of the BAW
>
>
>    
>>>  From what i understood, that's exactly Dean point. DNS servers would
>>> fallback to TCP if:
>>>        
>> not dns servers, dns caches / recursive resolvers
>>
>>      
>>> 1 - Responses were larger than 512 bytes (as described in the current RFC).
>>> 2 - When they felt threatened by a birthday attack.
>>>        
>> Agreed, I was just pointing out this wouldn't actually work.
>>      
> Depends what you mean by "not working".
>
> It may be that allowing a denial of service attack is better than allowing
> a cache to be poisoned.
>
> A solution that works, but is quite a lot of work to implement, is to send multiple queries and check they agree.
>
> See http://www.george-barwood.pwp.blueyonder.co.uk/DnsServer/
>
> -- George
>
>    


Hello George,

I was wondering how it would deal with situations like round-robin.

R's,

Hugo Monteiro.

-- 
fct.unl.pt:~# cat .signature

Hugo Monteiro
Email	 : [email protected]
Telefone : +351 212948300 Ext.15307
Web      : http://hmonteiro.net

Divisão de Informática
Faculdade de Ciências e Tecnologia da
		   Universidade Nova de Lisboa
Quinta da Torre   2829-516 Caparica   Portugal
Telefone: +351 212948596   Fax: +351 212948548
www.fct.unl.pt                [email protected]

fct.unl.pt:~# _
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.