Hi,

I don't really like the idea to add more complexity to powerdns when I can have a solution right now with using firewall rules in the kernel.

I'm sure it has a considerable performance impact if powerdns needs a counter with last updated timestamp for each and every source ip. These lists also need to cleaned regulary from inactive source ips.

Just my 5ยข
Thomas

On 12.09.12 16:54, Klaus Darilion wrote:
Hi!

Are there any plans to implement DNS RRL
(http://www.redbarn.org/dns/ratelimits) or similar for PowerDNS? These
DNS amplification attacks are really annoying.

regards
Klaus
_______________________________________________
Pdns-users mailing list
[email protected]
http://mailman.powerdns.com/mailman/listinfo/pdns-users
_______________________________________________
Pdns-users mailing list
[email protected]
http://mailman.powerdns.com/mailman/listinfo/pdns-users

Reply via email to