Am Thu, 23 Aug 2012 13:43:32 +0200 schrieb "Eivind Olsen" <eiv...@aminor.no>:
> Hello. > > I haven't seen this before.. I'm currently seeing someone (1 ip address) > do about 2.1 million queries / hour where a majority of the queries seem > to be: > > b._dns-sd._udp.0.129.16.172.in-addr.arpa IN PTR + > db._dns-sd._udp.0.129.16.172.in-addr.arpa IN PTR + > r._dns-sd._udp.0.129.16.172.in-addr.arpa IN PTR + > talk.l.google.com IN A + > gmail-pop.l.google.com IN A + > gmail-imap.l.google.com IN A + > > ...and similar variations of these. > > Have any of you seen something like this before? > Hi Eivind, these seem to be DNS Service Discovery requests and yes, we see loads of them on our servers. http://files.dns-sd.org/draft-cheshire-dnsext-dns-sd.txt Ciao Torsten _______________________________________________ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users