>>> Cache snooping lets anyone see who you've been talking to, when you
>>> looked
>>> it up, and when the cache will expire.
>>
>> cache snooping can also facilitate amplification attacks, see RFC 5358.
>
>
> No, not without recursion enabled it can't.

Yes, it can. Just spoof query to something which is already in cache
(like root servers).

O.
-- 
Ondřej Surý <[email protected]>
_______________________________________________
Unbound-users mailing list
[email protected]
http://unbound.nlnetlabs.nl/mailman/listinfo/unbound-users

Reply via email to