> In the implementation on FreeBSD I run the total payload,
> disregarding protocol overhead, is 602 lines * 80 chars = 48,160
> bytes.

That ("* 80 chars") sounds as though you're measuring the text output
from ntpdc monlist.  That is significantly larger than the actual
protocol data on the wire (which is what matters for DDoS bandwidth
amplification purposes).

> Regardless of which figures are correct for any given circumstance,
> the net effect appears to be a significant amplification.

Agreed, entirely agreed.

/~\ The ASCII                             Mouse
\ / Ribbon Campaign
 X  Against HTML                [email protected]
/ \ Email!           7D C8 61 52 5D E7 2D 39  4E F1 31 3E E8 B3 27 4B
_______________________________________________
pool mailing list
[email protected]
http://lists.ntp.org/listinfo/pool

Reply via email to