nanog mailing list archives
Re: register.com down sev0?
From: "Patrick W. Gilmore" <patrick () ianai net>
Date: Thu, 26 Oct 2006 11:34:40 -0400
On Oct 26, 2006, at 11:24 AM, Randy Bush wrote:
the case for which we know bcp 38 is useful, is the dns reflector attack. so far, botnets seem to have no need to spoof, they just overwhelm you with zombies from real space.
Incorrect.While that is one mode of attack from a botnet, it is not the only mode. And there are reasons for even botnets to spoof source addresses. And reasons that the attack-ee would prefer they did not.
Randy, are you REALLY arguing -against- BCP38? Or just yanking Fergie's chain 'cause it wouldn't have helped in this particular instance?
-- TTFN, patrick
Current thread:
- Re: register.com down sev0?, (continued)
- Re: register.com down sev0? Jared Mauch (Oct 26)
- Re: register.com down sev0? Daniel Senie (Oct 26)
- RE: register.com down sev0? Tony Li (Oct 26)
- different flavours of uRPF [RE: register.com down sev0?] Pekka Savola (Oct 26)
- Re: different flavours of uRPF [RE: register.com down sev0?] Tony Li (Oct 27)
- Re: different flavours of uRPF [RE: register.com down sev0?] Chris L. Morrow (Oct 27)
- Re: register.com down sev0? Jared Mauch (Oct 26)
- RE: register.com down sev0? Gadi Evron (Oct 27)
- Re: register.com down sev0? Gadi Evron (Oct 26)
- Re: register.com down sev0? Patrick W. Gilmore (Oct 26)
- Re: register.com down sev0? Randy Bush (Oct 26)
- Re: register.com down sev0? Michael . Dillon (Oct 27)
- Re: register.com down sev0? Daniel Senie (Oct 26)
- Re: register.com down sev0? Chris L. Morrow (Oct 26)
- Re: register.com down sev0? Albert Meyer (Oct 27)