Any dns experts on the list?

Last week I noticed our one dns server was running at 100% cpu and using
nearly all its available memory. Reboot. Problem goes away until next day.
Repeat, etc. I determined that an outside entity was hammering the dns
server. Blocked them at the main router. Problem solved, until yesterday.
Another entity was doing the same thing. Stopped them at the router today.
Looking at the logs I still see others doing it.

Is there a way, either in Win2000 DNS server or a Cisco router, to stop
other computers from beating on my DNS server? The server needs to do dns
lookups for our clients, and needs to be available to other internet DNS
servers for information on domains we host.

>From the DNS logs I've noticed most of these "problem" requests say received
from 1.2.3.4 but the send goes to 5.6.7.8, if that makes it easier to stop.

Just for the record, I've denied over 1,800,000 udp requests from
205.209.157.0/24 in less than an hour.

Thanks,
Greg

---
This E-mail came from the Declude.JunkMail mailing list.  To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.JunkMail".  The archives can be found
at http://www.mail-archive.com.

Reply via email to