Gentoo Archives: gentoo-user

From: Paul Ezvan <paul@×××××.fr>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] How to prevent a dns amplification attack
Date: Thu, 28 Mar 2013 19:41:06
Message-Id: 51549CC0.4070600@ezvan.fr
In Reply to: Re: [gentoo-user] How to prevent a dns amplification attack by Jarry
1 Le 28/03/2013 17:53, Jarry a écrit :
2 > On 28-Mar-13 9:51, Norman Rieß wrote:
3 >> Hello,
4 >>
5 >> i am using pdns recursor to provide a dns server which should be usable
6 >> for everybody.The problem is, that the server seems to be used in dns
7 >> amplification attacks.
8 >> I googled around on how to prevent this but did not really find
9 >> something usefull.
10 >>
11 >> Does anyone got an idea about this?
12 >
13 > Try to set-up connection rate limiting using iptables...
14 >
15 > Jarry
16 Hi,
17
18 a good example, in French but the commands will be sufficient :
19 http://www.bortzmeyer.org/rate-limiting-dns-open-resolver.html
20
21 Paul