As far as I've seen, it's only monlist responses. Only monlist gives you any sort of amplification, so that's all that's being abused.

On 1/9/2014 10:24 AM, Ask Bjørn Hansen wrote:
On Jan 9, 2014, at 7:00, Brian Rak <[email protected]> wrote:

It may not be a big problem for the NTP server, but as the target of the 
attacks it's a huge issue.
Have you seen any signs that anyone uses non-mode6/7 packets for ddos attacks? 
That seems like it'd be pretty pointless.


Ask

_______________________________________________
pool mailing list
[email protected]
http://lists.ntp.org/listinfo/pool

Reply via email to