Subject: Re: [DNSOP] I-D Action:draft-ietf-dnsop-reflectors-are-evil-06.txt 
Date: Thu, Sep 11, 2008 at 03:39:09PM -0400 Quoting Ron Bonica ([EMAIL 
PROTECTED]):
> Folks,
> 
> This is a reminder that only two questions are on the table. These are:
> 
> - is BCP38 enough to mitigate the attack vectors described in
> draft-ietf-dnsop-reflectors-are-evil-06

Were it universally deployed, yes. Will it be? No. Thus, no. 

> - is filtering after the attack has begun good enough

No. There might be sufficent harm caused by the transient damage before
responsive filtering (as opposed to measures already in place) takes
effect.

/Måns, borrowing the reminder to state his position. 
-- 
_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to