nanog mailing list archives
Re: DNS problems to RoadRunner - tcp vs udp
From: Jeroen Massar <jeroen () unfix org>
Date: Sat, 14 Jun 2008 22:47:47 +0200
Scott McGrath wrote: [..]
For a long time there has been a effective practice of UDP == resolution requests TCP == zone transfers
WRONG. TCP is there as a fallback when the answer of the question is too large. Zone transfer you can limit in your software. If you can't configure your dns servers properly then don't run DNS.
Also note that botnets have much more effective ways of taking you out.And sometimes domains actually require TCP because there are too many records for a label eg http://stupid.domain.name/node/651 If you are thus blocking TCP for DNS resolution you suddenly where blocking google and thus for some people "The Internet".
Also see: http://homepages.tesco.net/J.deBoynePollard/FGA/dns-edns0-and-firewalls.html (Which was the second hit for google(EDNS0) after a link to RFC2671) Greets, Jeroen
Attachment:
signature.asc
Description: OpenPGP digital signature
Current thread:
- Re: DNS problems to RoadRunner - tcp vs udp, (continued)
- Re: DNS problems to RoadRunner - tcp vs udp Justin Shore (Jun 13)
- Re: DNS problems to RoadRunner - tcp vs udp Robert E. Seastrom (Jun 14)
- Re: DNS problems to RoadRunner - tcp vs udp Simon Leinen (Jun 14)
- Re: DNS problems to RoadRunner - tcp vs udp Randy Bush (Jun 14)
- Re: DNS problems to RoadRunner - tcp vs udp Bill Owens (Jun 13)
- Re: DNS problems to RoadRunner - tcp vs udp Jon Kibler (Jun 13)
- Re: DNS problems to RoadRunner - tcp vs udp Tony Rall (Jun 13)
- Re: DNS problems to RoadRunner - tcp vs udp John Kristoff (Jun 13)
- Re: DNS problems to RoadRunner - tcp vs udp Randy Bush (Jun 13)
- Re: DNS problems to RoadRunner - tcp vs udp Scott McGrath (Jun 14)
- Re: DNS problems to RoadRunner - tcp vs udp Jeroen Massar (Jun 14)
- Re: DNS problems to RoadRunner - tcp vs udp Scott McGrath (Jun 14)
- Re: DNS problems to RoadRunner - tcp vs udp Jeroen Massar (Jun 14)
- Re: DNS problems to RoadRunner - tcp vs udp Sean Donelan (Jun 14)
- Re: DNS problems to RoadRunner - tcp vs udp Mike Lewinski (Jun 14)
- Re: DNS problems to RoadRunner - tcp vs udp Nathan Ward (Jun 14)
- Re: DNS problems to RoadRunner - tcp vs udp Mark Andrews (Jun 15)
- Re: DNS problems to RoadRunner - tcp vs udp Michael Sinatra (Jun 15)
- Re: DNS problems to RoadRunner - tcp vs udp Florian Weimer (Jun 15)
- Re: DNS problems to RoadRunner - tcp vs udp Nathan Ward (Jun 14)
- Re: DNS problems to RoadRunner - tcp vs udp Scott C. McGrath (Jun 16)