DGA Attack mitigation

Rainer Duffner rainer at ultra-secure.de
Mon Apr 9 20:54:34 UTC 2018

> Am 09.04.2018 um 21:15 schrieb Paul Vixie <paul at redbarn.org>:
> the source addresses are forged. the victims are not unclean in any way. this is why rrl exists.


We „know“ our clients, mostly.

Obviously, we’re a smaller shop.

Most people using our resolvers use our CPE, our lines, our servers….
And the rest doesn’t even have access.

Obviously, Mahdi is running a a shop that is a bit larger than ours.

