[Gllug] so after the DNS - Attack

Jason Clifford jason at ukfsn.org
Wed Feb 7 10:59:44 UTC 2007


On Wed, 7 Feb 2007, Juergen Schinker wrote:

> > Even if all the root servers went down at once, it would be a day or so
> > before really serious impact on J. Random Browser would be evident. Most
> > queries don't need to recurse that high.
> 
> but they do; most people underestimate that
> what if you read (in the newspaper) that yesterday the official
> DNS-Network went down ....
> 
> you try to get Information on the Internet ...ups -> does not resolv
> you try to send an email                   ...ups -> does not resolv

You appear not to understand how DNS is used by almost everyone.

People generally do not run their own name servers but rather use their 
ISP's CACHING name servers.
      ^^^^^^^

This means that they only ever send queries from their systems to the DNS 
servers offered either by their ISP or some other party running a caching 
name server.

Secondly to that for the every root name server to be put out of operation 
would require an event that affected multiple software platforms, multiple 
networks run by separate organisations all at the same time. If that were 
to happen the network you suggest would be in the clear how exactly?

Of all parts of the internet the DNS root servers are probably the only 
bit left that really will keep working no matter what. It's the only area 
left with true redundancy.

> > Yet you suggest that 12 geographically-limited servers are somehow more
> > DDoS-resistant than 122 geographically diverse servers.
> >
>  i just hope they don't do coz, if they do than it's to late

Would you care to try and explain what you actually mean? The above simply 
does not scan in any meaningful sense.

Jason
-- 
UKFSN.ORG			Finance Free Software while you surf the 'net
http://www.ukfsn.org/		  up to 8Mb ADSL Broadband from just £14.98
http://www.linuxadsl.co.uk/		ADSL routers from just £21.98

-------------- next part --------------
-- 
Gllug mailing list  -  Gllug at gllug.org.uk
http://lists.gllug.org.uk/mailman/listinfo/gllug


More information about the GLLUG mailing list