On Sep 11, 2014, at 9:46 PM, Stephane Bortzmeyer <[email protected]> wrote:

> Many open resolvers do not forward directly but send to a big resolver
> such as Google Public DNS (which you cannot obviously blacklist). The
> authoritative name servers therefore do not see directly the open
> resolver.]

Yes.  The blacklisting recommendation is for the open resolver
operator who is seeing the queries/responses in question (i.e., the OP
in this thread).

-----------------------------------
Roland Dobbins <[email protected]>
_______________________________________________
dns-operations mailing list
[email protected]
https://lists.dns-oarc.net/mailman/listinfo/dns-operations
dns-jobs mailing list
https://lists.dns-oarc.net/mailman/listinfo/dns-jobs

Reply via email to