nanog mailing list archives

Re: large organization nameservers sending icmp packets to dns servers.


From: Doug Barton <dougb () dougbarton us>
Date: Thu, 9 Aug 2007 15:53:12 -0700 (PDT)


On Wed, 8 Aug 2007, David Conrad wrote:

How many bytes of shell code can you stuff in a 512 byte DNS UDP packet?

How many bytes of shell code can you stuff into a 4096 byte EDNS0 UDP packet? :)

P.S. I still think blocking TCP/53 is stupid.

Agreed.

--

        If you're never wrong, you're not trying hard enough


Current thread: