We've been noticing A LOT of DNS amplification targeting Google IP space
over the last few days. Seems to be mostly in the evening hours in the US.
Any other network operators with access to flows seeing the same thing?

We've been chasing down the offending customers with open resolvers, but
its been very consistent.


just an fyi, i did have smokeping dig probes running, it also noticed some
very bad latency. It does appear google had an issue last night.

> as someone said, icmp is an unreliable test because ping requests get
> dropped by busy servers or network devices.
> consider using something like this as a test of a resolver:
> /usr/bin/time -f '%e' dig +short +noanswer +time=5 cnn.com @
