Full Disclosure mailing list archives

Re: What to do with a "burned" dns record? (was: sco.com -> slow? :)


From: Benjamin Schweizer <besh () gmx net>
Date: Mon, 02 Feb 2004 00:04:08 +0100

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Mary Landesman wrote:

| Can anyone shed light on this, i.e. why caldera.com would be
| affected if the DNS entry for sco.com were removed?

caldera.com, www.caldera.com, sco.com and formerly www.sco.com pointed
to the same ip address. The DDoS had success and this machine is
burning. As someone else mentioned: look at [1].
I assume that the DNS entry is still cached on some networks and the
SCO admins will bring up their domains by monday (except www.sco.com).

The big question is: what will happen to this "burned" domain name? It
will need months till this packetstorm will calm. Is there a more
professional idea than removing the a records?


[1] http://uptime.netcraft.com/perf/graph?site=www.sco.com

- --
"Men can only be happy when they do not assume that the object of life
is happiness."                                       --George Orwell
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFAHYXo4Lmwv7NFcKMRAqakAJ0dvzQ/3coIDqKf0bXuIeovtNXhKgCgl54q
eI4iTmzuMDySLmnRiPGgEes=
=5PmV
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: