@dakami Can you comment on DNSSEC & packet amplification? Cc: @eastdakota @davidu I asked @eastdakota (CEO (cont) http://tl.gd/n_1rjbg2p
@ErrataRob It doesn't matter. That is enough to abuse open resolvers not implementing RRLs to DDoS anything. UDP is the issue here.
-
-
@jedisct1 I agree, but rate-limited and sending TC bit instead telling them to go TCP sounds like a good solution to me -
@ErrataRob We're on the same page.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.