nanog mailing list archives

Re: large organization nameservers sending icmp packets to dns servers.


From: Mark Andrews <Mark_Andrews () isc org>
Date: Fri, 10 Aug 2007 11:43:23 +1000 (EST)


        I suspect that the origin of the myth that DNS/TCP is more
        dangerous than DNS/UDP is that the first root expliot of
        named was over TCP not UDP.  There were later exploits that
        were UDP only which totally busted the myth but it continues
        to live.

        Mark


Current thread: