Subject: Re: [DNSOP] I-D Action:draft-ietf-dnsop-reflectors-are-evil-06.txt Date: Thu, Sep 11, 2008 at 03:39:09PM -0400 Quoting Ron Bonica ([EMAIL PROTECTED]): > Folks, > > This is a reminder that only two questions are on the table. These are: > > - is BCP38 enough to mitigate the attack vectors described in > draft-ietf-dnsop-reflectors-are-evil-06
Were it universally deployed, yes. Will it be? No. Thus, no. > - is filtering after the attack has begun good enough No. There might be sufficent harm caused by the transient damage before responsive filtering (as opposed to measures already in place) takes effect. /Måns, borrowing the reminder to state his position. -- _______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop