Le 28/03/2013 17:53, Jarry a écrit :
On 28-Mar-13 9:51, Norman Rieß wrote:
Hello,
i am using pdns recursor to provide a dns server which should be usable
for everybody.The problem is, that the server seems to be used in dns
amplification attacks.
I googled around on how to prevent this but did not really find
something usefull.
Does anyone got an idea about this?
Try to set-up connection rate limiting using iptables...
Jarry
Hi,
a good example, in French but the commands will be sufficient :
http://www.bortzmeyer.org/rate-limiting-dns-open-resolver.html
Paul