Portal Home > Knowledgebase > Articles Database > DNS DDoS Attacks


DNS DDoS Attacks




Posted by HR Development, 03-09-2008, 05:59 AM
Hello, I have a VPS that's on the awknet network and I'm receiving DNS DDoS and I don't think they have anything to stop these attacks, how can I prevent these? Thanks, HRDev

Posted by zacharooni, 03-09-2008, 06:09 AM
Well.. you COULD recompile BIND from source to not send NXDOMAIN reply for non-local domains, but that's a bit extreme. Tried logging what they're attacking? tcpdump -vvv -nn dst port 53 -s 1700

Posted by HR Development, 03-09-2008, 06:13 AM
Well, the attack is not happening right now so I can't, but when it does happen i'll run that, is there any other alternatives to compiling BIND from source?

Posted by jon-f, 03-09-2008, 06:25 AM
try using an external dns service, they are usually better equipped for these things. I have had some clients that was getting my dns hit hard use freedns.org and issues were resolved.

Posted by HR Development, 03-09-2008, 06:26 AM
Okay, thanks. You mean freedns.afraid.org, right? Last edited by HR Development; 03-09-2008 at 06:31 AM.



Was this answer helpful?

Add to Favourites Add to Favourites    Print this Article Print this Article

Also Read
Do you do like this?? (Views: 600)