On Thu, Jan 16, 2014 at 3:05 PM, Mark Andrews <ma...@isc.org> wrote: > We don't need to change transport, we don't need to port knock. We > just need to implementent a slightly modified dns cookies which > reminds me that I need to review Donald Eastlake's new draft to be. >
But a change to DNS doesn't solve the problem for the other thousand or so UDP-based protocols. What would your fix be for the Chargen and SNMP protocols? -- > Mark Andrews, ISC > -- -JH